WAF Rule Set Update Announcement

Name waf.sig
Version 1.2.35
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2025-8-4
New Rules
(7)
Rule ID Rule Name Rule Details
1070210497 CVE-2025-49704,CVE-2025-53770:Microsoft SharePoint Code Injection Vulnerability Click for Details
1070210498 Weaver E-Mobile cdnfile Arbitrary File Read Vulnerability Click for Details
1070210499 Dahua ICC Remote Command Execution Vulnerability Click for Details
1070210500 Yonyou U8-Cloud FileManageServlet Arbitrary File Read Vulnerability Click for Details
1000010056 Invalid HTTP Request Header X-Forwarded-For -- Loopback Address Click for Details
1000010057 Invalid HTTP Request Header X-Forwarded-For -- Broadcast Address Click for Details
1000010058 Invalid HTTP Request Header X-Forwarded-For -- Multicast Address Click for Details