IPS Signature V7-IPS-1.0.243

Release time:2023-08-05
HomeSupportResource CenterSecuritySignature Database ServicesSignature Database ServicesSoftware DownloadSignature Database Services
Download
Title Size Downloads
V7-IPS-1.0.243.dat 12.20 MB

Version number
V7-IPS-1.0.243

MD5 number
3b39d742dae85eb94b4094b5135d257f

Update time
2023-08-02

Update attack list

Key new rules:
------------------------------

49040   CVE-2023-2928_Desdev_DedeCMS_Code_injection_Vulnerability[2]
---- Category: Vulnerability
---- Description: Desdev DedeCMS (Dream Content management system) is an
---- open source Content management system (CMS) based on PHP developed
---- by China Desdev. The system has functions such as content publishing,
---- content management, content editing, and content retrieval.
---- DedeCMS before 5.7.106 has a Code injection vulnerability,
---- which originates in the file uploads/dede/article_allowurl_edit.php.
---- The operation of the parameter allurls will cause Code injection.

49155 CVE-2023-2984_Desdev_DedeCMS_Code_injection_Vulnerability[2]
---- Category: Vulnerability
---- Description: Pimcore is an open-source web content management platform developed by
---- the Austrian company Pimcore for creating and managing web applications. 
---- This platform integrates applications such as web content management,
---- e-commerce framework, and product information management.
---- Pimcore before 10.5.22 has a security vulnerability due to path traversal.

49127 CNVD-2023-17316_Nacos_JWT_Authentication_Bypass_Vulnerability[2]
---- Category: Vulnerability
---- Description: Nacos is a dynamic service discovery, configuration management and
---- service management platform that is easier to build cloud native applications.
---- Nacos provides a set of easy-to-use features that can help users
---- quickly realize dynamic service discovery, service configuration,
---- service metadata and traffic management. There is an identity bypass vulnerability in Nacos.
---- An attacker can use this vulnerability to bypass the identity authentication mechanism.
---- The following productsand versions are affected: 0.1.0<=Nacos<=2.2.0.

Note
[1] Indicates that this change is incorporated into all security products
[2] Indicates that this change is only incorporated into the full series of F5000, T5000, T9000, M9000, F1030 and above F series products
[3] The device memory is greater than 2GB. After loading the IPS rules library file of this version, 19523 predefined rules can be generated in "Intrusion Prevention System"
[4] The device memory is less than or equal to 2GB. After loading the IPS rules library file of this version, 3088 predefined rules can be generated in "Intrusion Prevention System"


 

  • Cloud & AI
  • InterConnect
  • Intelligent Computing
  • Security
  • SMB Products
  • Intelligent Terminal Products
  • Product Support Services
  • Technical Service Solutions
All Services
  • Resource Center
  • Policy
  • Online Help
All Support
  • Become a Partner
  • Partner Resources
  • Partner Business Management
All Partners
  • Profile
  • News & Events
  • Online Exhibition Center
  • Contact Us
All About Us
新华三官网