WAF Rule Set Update Announcement

Name waf.sig
Version 1.1.145
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2022-7-26
New Rules
(8)
Rule ID Rule Name Rule Details
1070210247 Landray OA Remote Code Execution Vulnerability Click for Details
1070210248 Seeyon OA JDBC deserialization Code Execution Vulnerability Click for Details
1070210249 Tongda OA general/netdisk/upload Interface has Arbitrary File Upload Vulnerability Click for Details
1070210250 CVE-2022-33891: Apache Spark Command Injection Vulnerability Click for Details
1070310159 Fastjson Deserialization Vulnerability by Using java.lang.Exception Click for Details
1090410089 Suspected Behinder Webshell Access (Communication) Click for Details
1090410090 Suspected Behinder Webshell Access (Communication:protocol image) Click for Details
1090410091 Antsword webshell User-Agent detected Click for Details