This update package improves the detection capabilities of the Forcepoint NGFW system.
Risk | Vulnerability/Situation | References | Related Fingerprint | Situation Type |
High |
Wazuh-Wazuh-Host-Deny-Command-Injection |
CVE-2023-50260 |
HTTP_CRL-Wazuh-Wazuh-Host-Deny-Command-Injection |
Suspected Compromise |
High |
D-Link-Dir-605-Information-Disclosure-CVE-2021-40655 |
CVE-2021-40655 |
HTTP_CRL-D-Link-Dir-605-Information-Disclosure-CVE-2021-40655 |
Suspected Compromise |
High |
Xwiki.org-Xwiki-Uiextension-Wikiuiextensionparameters-Code-Injection |
CVE-2024-31997 |
HTTP_CRL-Xwiki.org-Xwiki-Uiextension-Wikiuiextensionparameters-Code-Injection |
Suspected Compromise |
High |
Ivanti-Avalanche-Getadhocfilepath-Directory-Traversal |
CVE-2024-24992 |
HTTP_CRL-Ivanti-Avalanche-Getadhocfilepath-Directory-Traversal |
Suspected Compromise |
High |
FXC-AE1021PE-Router-Command-Injection-CVE-2023-49897 |
CVE-2023-49897 |
HTTP_CRL-FXC-AE1021PE-Router-Command-Injection-CVE-2023-49897 |
Suspected Compromise |
High |
Fluent-Bit-Memory-Corruption-CVE-2024-4323 |
CVE-2024-4323 |
HTTP_CRL-Fluent-Bit-Memory-Corruption-CVE-2024-4323 |
Potential Compromise |
Type | Name | Changes |
Certificate Authority | Microsoft IT TLS CA 1 int |
|
Certificate Authority | Microsoft IT TLS CA 4 int |
|
Situation | URL_List-DNS-Over-HTTPS |
Detection mechanism updated |
|
IPList | Rwanda |
|
IPList | Somalia |
|
IPList | Yemen |
|
IPList | Iraq |
|
IPList | Saudi Arabia |
|
IPList | Iran |
|
IPList | Cyprus |
|
IPList | Tanzania |
|
IPList | Syria |
|
IPList | Armenia |
|
IPList | Kenya |
|
IPList | DR Congo |
|
IPList | Djibouti |
|
IPList | Uganda |
|
IPList | Central African Republic |
|
IPList | Seychelles |
|
IPList | Jordan |
|
IPList | Lebanon |
|
IPList | Kuwait |
|
IPList | Oman |
|
IPList | Qatar |
|
IPList | Bahrain |
|
IPList | United Arab Emirates |
|
IPList | Israel |
|
IPList | Türkiye |
|
IPList | Ethiopia |
|
IPList | Eritrea |
|
IPList | Egypt |
|
IPList | Sudan |
|
IPList | Greece |
|
IPList | Burundi |
|
IPList | Estonia |
|
IPList | Latvia |
|
IPList | Azerbaijan |
|
IPList | Lithuania |
|
IPList | Georgia |
|
IPList | Moldova |
|
IPList | Belarus |
|
IPList | Finland |
|
IPList | Ukraine |
|
IPList | Hungary |
|
IPList | Bulgaria |
|
IPList | Albania |
|
IPList | Poland |
|
IPList | Romania |
|
IPList | Zimbabwe |
|
IPList | Zambia |
|
IPList | Comoros |
|
IPList | Malawi |
|
IPList | Lesotho |
|
IPList | Botswana |
|
IPList | Mauritius |
|
IPList | Eswatini |
|
IPList | Réunion |
|
IPList | South Africa |
|
IPList | Mayotte |
|
IPList | Mozambique |
|
IPList | Madagascar |
|
IPList | Afghanistan |
|
IPList | Pakistan |
|
IPList | Bangladesh |
|
IPList | Turkmenistan |
|
IPList | Tajikistan |
|
IPList | Sri Lanka |
|
IPList | Bhutan |
|
IPList | India |
|
IPList | Maldives |
|
IPList | Nepal |
|
IPList | Myanmar |
|
IPList | Uzbekistan |
|
IPList | Kazakhstan |
|
IPList | Kyrgyzstan |
|
IPList | Cocos (Keeling) Islands |
|
IPList | Palau |
|
IPList | Vietnam |
|
IPList | Thailand |
|
IPList | Indonesia |
|
IPList | Laos |
|
IPList | Taiwan |
|
IPList | Philippines |
|
IPList | Malaysia |
|
IPList | China |
|
IPList | Hong Kong |
|
IPList | Brunei |
|
IPList | Macao |
|
IPList | Cambodia |
|
IPList | South Korea |
|
IPList | Japan |
|
IPList | North Korea |
|
IPList | Singapore |
|
IPList | Cook Islands |
|
IPList | Timor-Leste |
|
IPList | Russia |
|
IPList | Mongolia |
|
IPList | Australia |
|
IPList | Christmas Island |
|
IPList | Marshall Islands |
|
IPList | Federated States of Micronesia |
|
IPList | Papua New Guinea |
|
IPList | Solomon Islands |
|
IPList | Tuvalu |
|
IPList | Nauru |
|
IPList | Vanuatu |
|
IPList | New Caledonia |
|
IPList | Norfolk Island |
|
IPList | New Zealand |
|
IPList | Fiji |
|
IPList | Libya |
|
IPList | Cameroon |
|
IPList | Senegal |
|
IPList | Congo Republic |
|
IPList | Portugal |
|
IPList | Liberia |
|
IPList | Ivory Coast |
|
IPList | Ghana |
|
IPList | Equatorial Guinea |
|
IPList | Nigeria |
|
IPList | Burkina Faso |
|
IPList | Togo |
|
IPList | Guinea-Bissau |
|
IPList | Mauritania |
|
IPList | Benin |
|
IPList | Gabon |
|
IPList | Sierra Leone |
|
IPList | São Tomé and Príncipe |
|
IPList | Gambia |
|
IPList | Guinea |
|
IPList | Chad |
|
IPList | Niger |
|
IPList | Mali |
|
IPList | Western Sahara |
|
IPList | Tunisia |
|
IPList | Spain |
|
IPList | Morocco |
|
IPList | Malta |
|
IPList | Algeria |
|
IPList | Denmark |
|
IPList | Iceland |
|
IPList | United Kingdom |
|
IPList | Switzerland |
|
IPList | Sweden |
|
IPList | The Netherlands |
|
IPList | Austria |
|
IPList | Belgium |
|
IPList | Germany |
|
IPList | Luxembourg |
|
IPList | Ireland |
|
IPList | France |
|
IPList | Jersey |
|
IPList | Guernsey |
|
IPList | Slovakia |
|
IPList | Czechia |
|
IPList | Norway |
|
IPList | Italy |
|
IPList | Slovenia |
|
IPList | Montenegro |
|
IPList | Croatia |
|
IPList | Angola |
|
IPList | Namibia |
|
IPList | Barbados |
|
IPList | Cabo Verde |
|
IPList | Paraguay |
|
IPList | Uruguay |
|
IPList | Brazil |
|
IPList | Jamaica |
|
IPList | Dominican Republic |
|
IPList | Anguilla |
|
IPList | St Kitts and Nevis |
|
IPList | Antigua and Barbuda |
|
IPList | Saint Lucia |
|
IPList | Turks and Caicos Islands |
|
IPList | Aruba |
|
IPList | British Virgin Islands |
|
IPList | St Vincent and Grenadines |
|
IPList | Cayman Islands |
|
IPList | Belize |
|
IPList | El Salvador |
|
IPList | Guatemala |
|
IPList | Honduras |
|
IPList | Nicaragua |
|
IPList | Costa Rica |
|
IPList | Venezuela |
|
IPList | Ecuador |
|
IPList | Colombia |
|
IPList | Panama |
|
IPList | Argentina |
|
IPList | Chile |
|
IPList | Peru |
|
IPList | Mexico |
|
IPList | French Polynesia |
|
IPList | Pitcairn Islands |
|
IPList | Kiribati |
|
IPList | Tokelau |
|
IPList | Tonga |
|
IPList | Wallis and Futuna |
|
IPList | Samoa |
|
IPList | Niue |
|
IPList | Northern Mariana Islands |
|
IPList | Guam |
|
IPList | Puerto Rico |
|
IPList | U.S. Virgin Islands |
|
IPList | American Samoa |
|
IPList | Canada |
|
IPList | United States |
|
IPList | Palestine |
|
IPList | Antarctica |
|
IPList | Curaçao |
|
IPList | South Sudan |
|
IPList | TOR exit nodes IP Address List |
|
IPList | Amazon AMAZON |
|
IPList | Amazon S3 |
|
IPList | Amazon EC2 |
|
IPList | TOR relay nodes IP Address List |
|
IPList | Microsoft Azure datacenter for centralus |
|
IPList | Microsoft Azure datacenter for eastus2 |
|
IPList | Microsoft Azure datacenter for eastus |
|
IPList | Microsoft Azure datacenter for japaneast |
|
IPList | Microsoft Azure datacenter for northcentralus |
|
IPList | Microsoft Azure datacenter for northeurope |
|
IPList | Microsoft Azure datacenter for southcentralus |
|
IPList | Microsoft Azure datacenter for westcentralus |
|
IPList | Microsoft Azure datacenter for westeurope |
|
IPList | Microsoft Azure datacenter for westus2 |
|
IPList | Microsoft Azure datacenter |
|
IPList | Botnet IP Address List |
|
IPList | Malicious Site IP Address List |
|
IPList | Microsoft Azure datacenter for malaysiasouth |
|
IPList | Amazon AMAZON ap-southeast-1 |
|
IPList | Amazon EC2 ap-southeast-1 |
|
IPList | NordVPN Servers IP Address List |
|
IPList | Amazon AMAZON eu-central-1 |
|
IPList | Microsoft Azure service for StorageMover |
|
IPList | Amazon AMAZON us-east-1 |
|
IPList | Amazon S3 us-east-1 |
|
IPList | Amazon EC2 us-east-1 |
|
IPList | Amazon AMAZON us-east-2 |
|
IPList | Amazon EC2 us-east-2 |
|
IPList | Microsoft Azure service for AppService |
|
IPList | Microsoft Azure service for AzureCloud |
|
IPList | Microsoft Azure service for GuestAndHybridManagement |
|
IPList | Microsoft Azure datacenter for westus3 |
|
IPList | Microsoft Azure datacenter for qatarcentral |
|
IPList | Microsoft Azure datacenter for taiwannorth |
|
Situation | HTTP_PSU-Shared-Variables |
Fingerprint regexp changed |
|
Situation | File-Text_ProZilla-FTPSearch-Buffer-Overflow |
Description has changed |
Category tag situation Obsolete added |
Category tag os Any Operating System removed |
Category tag hardware Any Hardware removed |
Category tag application ProZilla removed |
Category tag group CVE2005 removed |
Category tag os_not_specific Any Operating System not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_Novell-iPrint-Client-ActiveX-Control-UploadPrinterDriver-BOF |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag application Novell iPrint Client for Windows removed |
Category tag group CVE2008 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_Mozilla-Products-SVG-Layout-Engine-Index-Parameter-Memory-Corruption |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag application Mozilla SeaMonkey removed |
Category tag application Mozilla Firefox removed |
Category tag application Mozilla Thunderbird removed |
Category tag group CVE2007 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_E-Book-Systems-FlipViewer-ActiveX-Control-Buffer-Overflow |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag application E-Book Systems FlipViewer removed |
Category tag group CVE2007 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_Zenturi-ProgramChecker-sasatl-ActiveX-Control-DebugMsgLog-Method |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag application Zenturi ProgramChecker removed |
Category tag group CVE2007 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_Microsoft-ATL-Uninitialized-Object |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag group MS2009-08 removed |
Category tag group CVE2009 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
|
Situation | File-Text_Novell-Groupwise-Client-Img-Tag-Src-Parameter-Buffer-Overflow |
Description has changed |
Category tag situation Obsolete added |
Category tag os Windows removed |
Category tag hardware Any Hardware removed |
Category tag application Novell GroupWise Client removed |
Category tag group CVE2007 removed |
Category tag os_not_specific Windows not specific removed |
Category tag situation Potential Compromise removed |
Category tag group Severity over 4 Correlation Dependency Group removed |
Fingerprint regexp changed |
|
Situation | File-Text_ActiveX-Shared-Variables |
|
Situation | File-Text_Suspicious-HTML-File |
|
Application | Oracle-Cloud |
Category tag application_usage Infrastructure Services added |
Category tag application_usage ERP/CRM removed |
|
Application | TOR |
|
Application | DNS-Over-HTTPS |
|
Application | NordVPN |
|