WAF Rule Set Update Announcement

Name waf.sig
Version 1.1.141
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2022-5-25
New Rules
(2)
Rule ID Rule Name Rule Details
1070110071 CVE-2022-22978: Spring Security Authentication Bypass Vulnerability(Unicode Character) Click for Details
1070310155 Fastjson 1.2.80 Deserialization Vulnerability Click for Details
Updated Rules
(3)
Rule ID Description Ruel Details
1000000055 CR/LF in Request Filename detected Click for Details
1070210147 CNVD-2017-20077: Ueditor .net Version Arbitrary File Upload Vulnerability Click for Details
1040210000 IIS Directory Listing Click for Details