WAF Rule Set Update Announcement

Name waf.sig
Version 1.2.59
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2026-6-29
New Rules
(12)
Rule ID Rule Name Rule Details
1030010028 XSS Injection Attack Attempts - in body Click for Details
1030010029 XSS Injection Attack Attempts - in header Click for Details
1060110039 SSRF Scanning Detection Click for Details
1070310284 PHP File Parsing Vulnerability Click for Details
1070310285 CVE-2026-40175:Nginx UI Sensitive Information Disclosure Vulnerability Click for Details
1070310286 Wanhu ezEIP success.aspx Deserialization Vulnerability Click for Details
1020010150 SQL Injection Attack Attempts - in body Click for Details
1020010151 SQL Injection Attack Attempts - in header Click for Details
1020410042 Command Injection Detection - sh Click for Details
1020810061 PHP Code Injection Attack Click for Details
1020810062 FreeMarker Server Side Template Injection Click for Details
1020510012 Disable netdoc Protocol In ARGS for Blocking SSRF Attack Click for Details