WAF Rule Set Update Announcement

Name waf.sig
Version 1.1.138
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2022-3-31
New Rules
(2)
Rule ID Rule Name Rule Details
1070210199 CVE-2022-22963: Spring Cloud Function Spel Remote Code Execution Vulnerability Click for Details
1070110069 Spring Core Remote Code Execution Vulnerability Click for Details
Updated Rules
(6)
Rule ID Description Ruel Details
1020400010 Windows PowerShell Command. Click for Details
1070210116 CNVD-2019-32204: Weaver e-cology OA SQL Remote Code Execution Vulnerability Click for Details
1040610001 Email Account Leakage Click for Details
1020030000 SQL Injection Attack Attempts: Detection based on semantic analysis Click for Details
1030020000 XSS Injection Attack Attempts: Detection based on semantic analysis Click for Details
1030030000 XSS Injection Attack Attempts: Detection based on semantic analysis Click for Details