IPS Signature V7-IPS-1.0.339

Release time:2025-02-21
HomeSupportSecuritySignature Database ServicesSoftware DownloadSignature Database Services
Download
Title Size Downloads
V7-IPS-1.0.339.dat 15.57 MB

Version number
V7-IPS-1.0.339

MD5 number
ab9315404b7bb211b92d6257a105ff0e

Update time
2025-02-20

Update attack list

Key new rules:
------------------------------

54532  Weaver_e-Bridge_addTasteJsonp_SQL_Injection_Vulnerability[2]
---- Category: Vulnerability
---- Description: E-Bridge is an office automation tool that mainly provides document management, process management,
---- collaborative working, knowledge management and mobile working functions. The e-Bridge addTasteJsonp interface
---- has an SQL injection vulnerability through which an attacker can obtain sensitive enterprise database data.

54517  CVE-2025-0108_Palo_Alto_Networks_PAN-OS_Web_Management_Interface_Authentication_Bypass[2]
---- Category: Vulnerability
---- Description: An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web
---- interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration.

54504  CVE-2024-55591_Fortinet_FortiOS_and_FortiProxy_Authentication_Bypass_Vulnerability(Attack_Attempt)[2]
---- Category: Vulnerability
---- Description: Fortinet FortiOS and Fortinet FortiProxy are both products of the American company Fortinet. Fortinet FortiOS is a suite of secure operating
---- systems dedicated to the FortiGate network security platform. Fortinet FortiProxy is a secure web proxy that protects employees from cyberattacks by combining
---- multiple detection technologies such as web filtering, DNS filtering, DLP, anti-virus, intrusion prevention, and advanced threat protection. Fortinet FortiOS
---- and FortiProxy have a security vulnerability that stems from the inclusion of an authentication bypass vulnerability. A remote attacker can exploit this
---- vulnerability to obtain superadministrator privileges through a crafted request to the Node.js websocket module.

Note
[1] Indicates that this change is incorporated into all security products
[2] Indicates that this change is only incorporated into the full series of F5000, T5000, T9000, M9000, F1030 and above F series products
[3] The device memory is greater than 2GB. After loading the IPS rules library file of this version, 24300 predefined rules can be generated in "Intrusion Prevention System"
[4] The device memory is less than or equal to 2GB. After loading the IPS rules library file of this version, 3284 predefined rules can be generated in "Intrusion Prevention System"


 

  • Cloud & AI
  • InterConnect
  • Intelligent Computing
  • Security
  • SMB Products
  • Intelligent Terminal Products
  • Product Support Services
  • Technical Service Solutions
All Services
  • Resource Center
  • Policy
  • Online Help
All Support
  • Become A Partner
  • Partner Policy & Program
  • Global Learning
  • Partner Sales Resources
  • Partner Business Management
  • Service Business
All Partners
  • Profile
  • News & Events
  • Online Exhibition Center
  • Contact Us
All About Us
新华三官网