| Title | Size | Downloads |
|---|---|---|
| V7-IPS-1.0.243.dat | 12.20 MB |
Version number
V7-IPS-1.0.243
MD5 number
3b39d742dae85eb94b4094b5135d257f
Update time
2023-08-02
Update attack list
Key new rules:
------------------------------
49040 CVE-2023-2928_Desdev_DedeCMS_Code_injection_Vulnerability[2]
---- Category: Vulnerability
---- Description: Desdev DedeCMS (Dream Content management system) is an
---- open source Content management system (CMS) based on PHP developed
---- by China Desdev. The system has functions such as content publishing,
---- content management, content editing, and content retrieval.
---- DedeCMS before 5.7.106 has a Code injection vulnerability,
---- which originates in the file uploads/dede/article_allowurl_edit.php.
---- The operation of the parameter allurls will cause Code injection.
49155 CVE-2023-2984_Desdev_DedeCMS_Code_injection_Vulnerability[2]
---- Category: Vulnerability
---- Description: Pimcore is an open-source web content management platform developed by
---- the Austrian company Pimcore for creating and managing web applications.
---- This platform integrates applications such as web content management,
---- e-commerce framework, and product information management.
---- Pimcore before 10.5.22 has a security vulnerability due to path traversal.
49127 CNVD-2023-17316_Nacos_JWT_Authentication_Bypass_Vulnerability[2]
---- Category: Vulnerability
---- Description: Nacos is a dynamic service discovery, configuration management and
---- service management platform that is easier to build cloud native applications.
---- Nacos provides a set of easy-to-use features that can help users
---- quickly realize dynamic service discovery, service configuration,
---- service metadata and traffic management. There is an identity bypass vulnerability in Nacos.
---- An attacker can use this vulnerability to bypass the identity authentication mechanism.
---- The following productsand versions are affected: 0.1.0<=Nacos<=2.2.0.
Note
[1] Indicates that this change is incorporated into all security products
[2] Indicates that this change is only incorporated into the full series of F5000, T5000, T9000, M9000, F1030 and above F series products
[3] The device memory is greater than 2GB. After loading the IPS rules library file of this version, 19523 predefined rules can be generated in "Intrusion Prevention System"
[4] The device memory is less than or equal to 2GB. After loading the IPS rules library file of this version, 3088 predefined rules can be generated in "Intrusion Prevention System"

