WAF Rule Set Update Announcement

Name waf.sig
Version 1.2.28
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2025-4-24
New Rules
(4)
Rule ID Rule Name Rule Details
1070210473 CVE-2025-31864:WordPress Plugin Beam me up Scotty - Back to Top Button Cross Site Scripting Vulnerability Click for Details
1070210474 CVE-2024-13126:WordPress Plugin Download Manager 3.3.06 Unauthorized Access Vulnerability Click for Details
1070210475 CVE-2025-32118:WordPress plugin CMP – Coming Soon & Maintenance Arbitrary File Upload Vulnerability Click for Details
1070210472 CVE-2017-9822:DotNetNuke Cookie Deserialization Remote Code Execution Vulnerability Click for Details
Updated Rules
(1)
Rule ID Description Ruel Details
1070310216 CVE-2023-43472:Mlflow 2.8.1 Information Disclosure Vulnerability Click for Details