Rule Update
24-019 (April 9, 2024)
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Ivanti Avalanche
1011759* - Ivanti Avalanche Multiple Arbitrary File Upload Vulnerabilities
1011955* - Ivanti Avalanche XML External Entity Information Disclosure Vulnerability (CVE-2023-46265)
Java RMI
1012013 - Progress OpenEdge Authentication Bypass Vulnerability (CVE-2024-1403)
Web Application PHP Based
1011993* - LibreNMS SQL Injection Vulnerability (CVE-2023-5591)
1012014 - WordPress 'LayerSlider' Plugin SQL Injection Vulnerability (CVE-2024-2879)
Web Server Adobe ColdFusion
1012011 - Adobe ColdFusion Improper Access Control Vulnerability (CVE-2024-20767)
Web Server Miscellaneous
1011994* - Graylog Open Insecure Deserialization Vulnerability (CVE-2024-24824)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
1010349* - Docker Daemon Remote API Calls
Deep Packet Inspection Rules:
Ivanti Avalanche
1011759* - Ivanti Avalanche Multiple Arbitrary File Upload Vulnerabilities
1011955* - Ivanti Avalanche XML External Entity Information Disclosure Vulnerability (CVE-2023-46265)
Java RMI
1012013 - Progress OpenEdge Authentication Bypass Vulnerability (CVE-2024-1403)
Web Application PHP Based
1011993* - LibreNMS SQL Injection Vulnerability (CVE-2023-5591)
1012014 - WordPress 'LayerSlider' Plugin SQL Injection Vulnerability (CVE-2024-2879)
Web Server Adobe ColdFusion
1012011 - Adobe ColdFusion Improper Access Control Vulnerability (CVE-2024-20767)
Web Server Miscellaneous
1011994* - Graylog Open Insecure Deserialization Vulnerability (CVE-2024-24824)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
1010349* - Docker Daemon Remote API Calls