WAF Rule Set Update Announcement

Name waf.sig
Version 1.2.9
StoneOS Version 5.5R2-W-1.1 or above, BDS 5.5R8-3.4 or above
Release Date 2024-4-18
New Rules
(3)
Rule ID Rule Name Rule Details
1070210305 XXL-JOB Unauthorized Remote Code Execution Vulnerability Click for Details
1070210306 CVE-2023-49070: Apache Ofbiz 18.12.09 Remote Code Execution Vulnerability Click for Details
1070210307 CVE-2023-7028: GitLab Arbitrary User Password Reset Vulnerability Click for Details
Updated Rules
(3)
Rule ID Description Ruel Details
1070210303 CVE-2023-29357: Microsoft SharePoint Server Elevation of Privilege Vulnerability Click for Details
1070210304 Seeyon OA RunSignatureAction Remote Command Execution Vulnerability Click for Details
1070310181 CVE-2023-39361: Cacti 1.2.24 Unauthenticated SQL Injection Vulnerability Click for Details