Rule Update

26-008 (February 24, 2026)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Ivanti Avalanche
1012411* - Ivanti Avalanche Enterprise Service Arbitrary File Upload Vulnerability (CVE-2021-42125)


MindsDB
1012534 - MindsDB Path Traversal Vulnerability (CVE-2025-68472)


Oracle E-Business Suite Web Interface
1012464* - Oracle E-Business Suite Server-Side Request Forgery Vulnerability (CVE-2025-61882 and CVE-2025-61884)


SNMP Server
1012537 - Net-SNMP Buffer Overflow Vulnerability (CVE-2025-68615)


SmarterTools SmarterMail
1012539 - SmarterTools SmarterMail Authentication Bypass Vulnerability (CVE-2026-23760)


Web Application PHP Based
1012526 - Wordpress 'News and Blog Designer Bundle' Plugin Local File Inclusion Vulnerability (CVE-2025-14502)


Web Server Common
1012536 - IOTSuite SQL Injection Vulnerability (CVE-2025-52694)


Web Server HTTPS
1012314* - Cacti CRLF Injection Vulnerability (CVE-2025-24367)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.

Featured Stories