WAF Rule Set Update Announcement

Name waf.sig
Version 1.1.142
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2022-6-10
New Rules
(3)
Rule ID Rule Name Rule Details
1070210240 CVE-2022-26134: Atlassian Confluence OGNL Injection Vulnerability Click for Details
1070210241 Druid Unauthorized Access Vulnerability Click for Details
1070210242 CVE-2020-27986: SonarQube Sensitive Information Disclosure Vulnerability Click for Details
Updated Rules
(1)
Rule ID Description Ruel Details
1070110018 CVE-2013-2134: Apache Struts OGNL Expression Injection Vulnerability via Wildcard Matching Click for Details