This update package improves the detection capabilities of the Forcepoint NGFW system.
Risk | Vulnerability/Situation | References | Related Fingerprint | Situation Type | Change Description |
High |
Apache-Httpd-Mod_Log_Config-Cookie-Handling-Denial-Of-Service |
CVE-2012-0021 |
HTTP_CSH-Apache-Httpd-Mod_Log_Config-Cookie-Handling-Denial-Of-Service |
Potential Compromise |
Fingerprint regexp changed |
|
Low |
Apache-HTTP-Server-Mod_log_Config-Denial-Of-Service |
CVE-2014-0098 |
HTTP_CSH-Apache-HTTP-Server-Mod_log_Config-Denial-Of-Service |
Possibly Unwanted Content |
Fingerprint regexp changed |
|
High |
Apache-Struts-Cookieinterceptor-Classloader-Security-Bypass |
CVE-2014-0113 |
HTTP_CHS-Apache-Struts-Cookieinterceptor-Classloader-Security-Bypass |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Invalid-Base64-Cookie |
No CVE/CAN |
HTTP_CSH-Invalid-Base64-Cookie |
Suspected Attack Related Anomalies |
Fingerprint regexp changed |
|
High |
Trend-Micro-Threat-Discovery-Appliance-Remote-Command-Execution |
CVE-2016-7552 |
HTTP_CSH-Trend-Micro-Threat-Discovery-Appliance-Remote-Command-Execution |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Apache-Httpd-Error-Code-400-Httponly-Cookie-Handling-Information-Disclosure |
CVE-2012-0053 |
HTTP_CSH-Very-Long-Cookie-Header |
Potential Compromise |
Fingerprint regexp changed |
|
High |
PHP-4-Unserialize-ZVAL-Reference-Counter-Overflow |
CVE-2007-1286 |
HTTP_CSH-PHP-4-Unserialize-ZVAL-Reference-Counter-Overflow |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Western-Digital-Arkeia-Unauthenticated-Script-Upload |
No CVE/CAN |
HTTP_CSH-Western-Digital-Arkeia-Unauthenticated-Script-Upload |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Haproxy-Client-And-Server-Cookie-Parsing-Denial-Of-Service |
CVE-2019-14241 |
HTTP_CSH-Haproxy-Client-And-Server-Cookie-Parsing-Denial-Of-Service |
Potential Compromise |
Fingerprint regexp changed |
|
High |
Cisco-Small-Business-RV-Series-Authentication-Bypass-And-Command-Injection |
CVE-2021-1473 |
HTTP_CSH-Cisco-Small-Business-RV-Series-Authentication-Bypass-And-Command-Injection |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Gogs-File-Upload-Tree_path-Command-Injection |
CVE-2022-0415 |
HTTP_CSH-Gogs-File-Upload-Tree_path-Command-Injection |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Zabbix-Unsafe-Client-Side-Session-Storage-CVE-2022-23131 |
CVE-2022-23131 |
HTTP_CSH_Zabbix-Unsafe-Client-Side-Session-Storage-CVE-2022-23131 |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Wordpress-Limit-Login-Attempts-Plugin-Stored-Cross-Site-Scripting |
CVE-2023-1861 |
HTTP_CSH-Wordpress-Limit-Login-Attempts-Plugin-Stored-Cross-Site-Scripting |
Suspected Compromise |
Fingerprint regexp changed |
|
High |
Progress-MOVEit-Transfer-Userprocesspasschangerequest-SQL-Injection |
CVE-2023-36934 |
HTTP_CSH-Progress-MOVEit-Transfer-Userprocesspasschangerequest-SQL-Injection |
Suspected Compromise |
Fingerprint regexp changed |
|
Type | Name | Changes |
Situation | File_Blocked-Bad-SHA1-Hash |
Detection mechanism updated |
|
Situation | URL_List-DNS-Over-HTTPS |
Detection mechanism updated |
|
IPList | Somalia |
|
IPList | Iraq |
|
IPList | Saudi Arabia |
|
IPList | Iran |
|
IPList | Cyprus |
|
IPList | Syria |
|
IPList | Kenya |
|
IPList | DR Congo |
|
IPList | Seychelles |
|
IPList | Jordan |
|
IPList | Lebanon |
|
IPList | Kuwait |
|
IPList | Bahrain |
|
IPList | United Arab Emirates |
|
IPList | Israel |
|
IPList | Turkey |
|
IPList | Egypt |
|
IPList | Sudan |
|
IPList | Greece |
|
IPList | Estonia |
|
IPList | Latvia |
|
IPList | Azerbaijan |
|
IPList | Lithuania |
|
IPList | Moldova |
|
IPList | Belarus |
|
IPList | Finland |
|
IPList | Ukraine |
|
IPList | North Macedonia |
|
IPList | Hungary |
|
IPList | Bulgaria |
|
IPList | Albania |
|
IPList | Poland |
|
IPList | Romania |
|
IPList | Zimbabwe |
|
IPList | Botswana |
|
IPList | Mauritius |
|
IPList | South Africa |
|
IPList | Afghanistan |
|
IPList | Pakistan |
|
IPList | Bangladesh |
|
IPList | Sri Lanka |
|
IPList | Bhutan |
|
IPList | India |
|
IPList | Maldives |
|
IPList | Nepal |
|
IPList | Myanmar |
|
IPList | Kazakhstan |
|
IPList | Vietnam |
|
IPList | Thailand |
|
IPList | Indonesia |
|
IPList | Laos |
|
IPList | Taiwan |
|
IPList | Philippines |
|
IPList | Malaysia |
|
IPList | China |
|
IPList | Hong Kong |
|
IPList | Macao |
|
IPList | Cambodia |
|
IPList | South Korea |
|
IPList | Japan |
|
IPList | North Korea |
|
IPList | Singapore |
|
IPList | Russia |
|
IPList | Australia |
|
IPList | Vanuatu |
|
IPList | Norfolk Island |
|
IPList | New Zealand |
|
IPList | Libya |
|
IPList | Congo Republic |
|
IPList | Portugal |
|
IPList | Ghana |
|
IPList | Nigeria |
|
IPList | Gibraltar |
|
IPList | Gambia |
|
IPList | Spain |
|
IPList | Morocco |
|
IPList | Denmark |
|
IPList | Iceland |
|
IPList | United Kingdom |
|
IPList | Switzerland |
|
IPList | Sweden |
|
IPList | Netherlands |
|
IPList | Austria |
|
IPList | Belgium |
|
IPList | Germany |
|
IPList | Luxembourg |
|
IPList | Ireland |
|
IPList | France |
|
IPList | Andorra |
|
IPList | Liechtenstein |
|
IPList | Slovakia |
|
IPList | Czechia |
|
IPList | Norway |
|
IPList | Italy |
|
IPList | Slovenia |
|
IPList | Montenegro |
|
IPList | Croatia |
|
IPList | Angola |
|
IPList | Barbados |
|
IPList | Paraguay |
|
IPList | Uruguay |
|
IPList | Brazil |
|
IPList | Dominican Republic |
|
IPList | Martinique |
|
IPList | Bermuda |
|
IPList | Dominica |
|
IPList | Saint Lucia |
|
IPList | British Virgin Islands |
|
IPList | St Vincent and Grenadines |
|
IPList | Guadeloupe |
|
IPList | Cayman Islands |
|
IPList | Belize |
|
IPList | Guatemala |
|
IPList | Costa Rica |
|
IPList | Venezuela |
|
IPList | Colombia |
|
IPList | Panama |
|
IPList | Argentina |
|
IPList | Chile |
|
IPList | Bolivia |
|
IPList | Peru |
|
IPList | Mexico |
|
IPList | Northern Mariana Islands |
|
IPList | Guam |
|
IPList | Puerto Rico |
|
IPList | U.S. Virgin Islands |
|
IPList | U.S. Outlying Islands |
|
IPList | American Samoa |
|
IPList | Canada |
|
IPList | United States |
|
IPList | Palestine |
|
IPList | Serbia |
|
IPList | Sint Maarten |
|
IPList | TOR exit nodes IP Address List |
|
IPList | Amazon AMAZON |
|
IPList | Webex Servers IP Address List |
|
IPList | Amazon ROUTE53_HEALTHCHECKS |
|
IPList | Amazon EC2 |
|
IPList | Google Servers |
|
IPList | Microsoft Azure datacenter for australiaeast |
|
IPList | Microsoft Azure datacenter for australiasoutheast |
|
IPList | Microsoft Azure datacenter for brazilsouth |
|
IPList | Microsoft Azure datacenter for canadacentral |
|
IPList | TOR relay nodes IP Address List |
|
IPList | Microsoft Azure datacenter for canadaeast |
|
IPList | Microsoft Azure datacenter for centralindia |
|
IPList | Microsoft Azure datacenter for centralus |
|
IPList | Microsoft Azure datacenter for eastus2euap |
|
IPList | Microsoft Azure datacenter for eastus2 |
|
IPList | Microsoft Azure datacenter for eastus |
|
IPList | Microsoft Azure datacenter for centralfrance |
|
IPList | Microsoft Azure datacenter for southfrance |
|
IPList | Microsoft Azure datacenter for japaneast |
|
IPList | Microsoft Azure datacenter for japanwest |
|
IPList | Microsoft Azure datacenter for koreacentral |
|
IPList | Microsoft Azure datacenter for koreasouth |
|
IPList | Microsoft Azure datacenter for northcentralus |
|
IPList | Microsoft Azure datacenter for northeurope |
|
IPList | Microsoft Azure datacenter for southcentralus |
|
IPList | Microsoft Azure datacenter for southindia |
|
IPList | Microsoft Azure datacenter for southeastasia |
|
IPList | Microsoft Azure datacenter for uksouth |
|
IPList | Microsoft Azure datacenter for ukwest |
|
IPList | Microsoft Azure datacenter for westcentralus |
|
IPList | Microsoft Azure datacenter for westeurope |
|
IPList | Microsoft Azure datacenter for westindia |
|
IPList | Microsoft Azure datacenter for westus2 |
|
IPList | Microsoft Azure datacenter for westus |
|
IPList | Microsoft Azure datacenter |
|
IPList | Zscaler IP Address List |
|
IPList | Okta IP Address List |
|
IPList | Botnet IP Address List |
|
IPList | Malicious Site IP Address List |
|
IPList | Webex Teams |
|
IPList | Microsoft Azure datacenter for malaysiasouth |
|
IPList | NordVPN Servers IP Address List |
|
IPList | Amazon AMAZON ca-central-1 |
|
IPList | Amazon AMAZON eu-central-1 |
|
IPList | Amazon AMAZON ap-southeast-5 |
|
IPList | Amazon AMAZON eu-west-1 |
|
IPList | Amazon EC2 ap-southeast-5 |
|
IPList | Amazon EC2 eu-west-1 |
|
IPList | Amazon AMAZON us-east-1 |
|
IPList | Amazon EC2 us-east-1 |
|
IPList | Amazon AMAZON us-west-2 |
|
IPList | Amazon ROUTE53_HEALTHCHECKS us-west-2 |
|
IPList | Amazon EC2 us-west-2 |
|
IPList | Microsoft Azure datacenter for brazilse |
|
IPList | Microsoft Azure datacenter for germanyn |
|
IPList | Microsoft Azure datacenter for germanywc |
|
IPList | Microsoft Azure datacenter for norwaye |
|
IPList | Microsoft Azure datacenter for norwayw |
|
IPList | Microsoft Azure datacenter for southafricanorth |
|
IPList | Microsoft Azure datacenter for southafricawest |
|
IPList | Microsoft Azure datacenter for switzerlandn |
|
IPList | Microsoft Azure datacenter for switzerlandw |
|
IPList | Microsoft Azure datacenter for uaecentral |
|
IPList | Microsoft Azure datacenter for uaenorth |
|
IPList | Microsoft Azure service for AzureCloud |
|
IPList | Microsoft Azure service for AzureKeyVault |
|
IPList | Microsoft Azure service for AzureMonitor |
|
IPList | Microsoft Azure service for EventHub |
|
IPList | Microsoft Azure service for LogicApps |
|
IPList | Microsoft Azure service for LogicAppsManagement |
|
IPList | Microsoft Azure datacenter for swedencentral |
|
IPList | Microsoft Azure datacenter for swedensouth |
|
IPList | Microsoft Azure datacenter for westus3 |
|
IPList | Microsoft Azure service for EOPExternalPublishedIPs |
|
IPList | Microsoft Azure datacenter for qatarcentral |
|
IPList | Microsoft Azure datacenter for israelcentral |
|
IPList | Microsoft Azure datacenter for italynorth |
|
IPList | Microsoft Azure datacenter for polandcentral |
|
IPList | Twilio SIP |
|
IPList | Twilio media |
|
Situation | HTTP_CSU-Shared-Variables |
|
Situation | HTTP_CSH-Shared-Variables |
Fingerprint regexp changed |
|
Situation | SMB-TCP_CHS-SMB2-Negotiate-Request |
Fingerprint regexp changed |
|
Situation | SMB-TCP_SHS-SMB2-Tree-Connect-Response |
Fingerprint regexp changed |
|
Situation | HTTP_PSU-Shared-Variables |
Fingerprint regexp changed |
|
Situation | File-Name_Shared-Variables |
|
Application | YouTube |
|
Application | Webex |
|
Application | SMB2 |
|
Application | TOR |
|
Application | DNS-Over-HTTPS |
|
Application | SMB3 |
|
Application | Webex-Teams |
|
Application | NordVPN |
|
Situation | URL_List-DNS-Over-HTTPS |
Detection mechanism updated |
|