Title | Size | Downloads |
---|---|---|
V7-IPS-1.0.357.dat | 16.16 MB |
Version number
V7-IPS-1.0.357
MD5 number
2a5cecb683af2fcd1cefdc6b9ba8073f
Update time
2025-07-02
Update attack list
Key new rules:
------------------------------
55609 CVE-2025-53004_DataEase_PostgreSQL_Data_Source_JDBC_Connection_Parameter_Bypass_Vulnerability[2]
---- Category: Vulnerability
---- Description: DataEase is an open-source data visualization analysis tool that provides data analysis, chart display, and dashboard design functions,
---- widely used in enterprise data analysis scenarios. In the affected version, only the socketFactory and socketFactoryArg parameters in the JDBC
---- connection string are blacklisted. Attackers can bypass the restrictions by configuring PostgreSQL data source JDBC strings using the sslfactory
---- and sslfactoryard parameters.
55577 31GPS_Vehicle_Monitoring_Integrated_Management_System_Arbitrary_File_Upload_Vulnerability[2]
---- Category: Vulnerability
---- Description: There is an unauthorized file upload vulnerability in the Hangzhou Sany Qiancheng Vehicle Monitoring Comprehensive Management
---- System. Attackers can use this vulnerability to upload webshell files to the WEB directory, and combine it with SSRF vulnerabilities to read the webshell
---- file name and obtain server control permissions.
55591 Hikvision_iSecure_Center_alarmExport_Arbitrary_File_Upload_Vulnerability[1]
---- Category: Vulnerability
---- Description: There is an arbitrary file upload vulnerability in the alarmExport interface of Hikvision's comprehensive security platform. Attackers can exploit
---- this vulnerability to upload carefully crafted compressed files and use zipslip to decompress webshell files to any path, thereby gaining server control privileges.
Note
[1] Indicates that this change is incorporated into all security products
[2] Indicates that this change is only incorporated into the full series of F5000, T5000, T9000, M9000, F1030 and above F series products
[3] The device memory is greater than 2GB. After loading the IPS rules library file of this version, 25237 predefined rules can be generated in "Intrusion Prevention System"
[4] The device memory is less than or equal to 2GB. After loading the IPS rules library file of this version, 3286 predefined rules can be generated in "Intrusion Prevention System"