签名更新版本33

为版本33中识别的漏洞生成新的签名规则。您可以下载并配置这些签名规则,以保护您的设备免受安全漏洞攻击。

签名的版本

签名版本33适用于NetScaler VPX 11.1、NetScaler 12.0、Citrix ADC 12.1和Citrix ADC 13.0平台。

请注意

启用Post正文和响应正文签名规则可能会影响Citrix ADC CPU。

常见漏洞条目(CVE)洞察

下面列出了签名规则、CVE id及其描述信息。

规则 CVE 描述 漏洞引用
999860 WordPress插件Yuzo相关帖子跨站脚本漏洞 https://www.wordfence.com/blog/2019/04/yuzo-related-posts-zero-day-vulnerability-exploited-in-the-wild
999861 cve - 2019 - 12099 cve, 2019 - 12099
999862 WordPress插件数据库备份<=5.2-远程代码执行 https://www.wordfence.com/blog/2019/05/os-command-injection-vulnerability-patched-in-wp-database-backup-plug-in
999863 WordPress插件滑溜弹出-特权升级 https://www.wordfence.com/blog/2019/05/privilege-escalation-flaw-present-in-slick-popup-plug-in
999864 cve - 2019 - 10866 WordPress插件Form Maker 1.13.3 - SQL注入 cve,2019-10866
999865 WordPress插件给-存储的跨站点脚本捐助者 https://blog.sucuri.net/2019/05/wordpress-plug-in-give-stored-xss-for-donors.html
999866 WordPress插件My Calendar <= 3.1.9 -未经认证的跨站点脚本攻击 https://wpvulndb.com/vulnerabilities/9267
999867 WordPress插件Slimstat<=4.8-未经验证的存储跨站点脚本 https://blog.sucuri.net/2019/05/slimstat-stored-xss-from-visitors.html
999868 cve - 2019 - 2618 WebLogic任意上传漏洞 cve,2019-2618
999869 CVE-2019-11871 WEB-WORDPRESS WordPress插件自定义字段套件2.5.15之前-跨站脚本漏洞 cve, 2019 - 11871
999870 WEB-WORDPRESS WORDPRESS实时聊天支持插件通过wplc_custom_js参数在8.0.27之前存在持久性跨站点脚本漏洞 https://blog.sucuri.net/2019/05/persistent-cross-site-scripting-in-wp-live-chat-support-plug-in.html
999871 0.9.7.4之前的WEB-WORDPRESS WORDPRESS插件W3 Total Cache-PHAR远程代码执行漏洞 https://wpvulndb.com/vulnerabilities/9270
999872 0.9.7.4之前的WEB-WORDPRESS WORDPRESS插件W3 Total Cache-PHAR远程代码执行漏洞 https://wpvulndb.com/vulnerabilities/9269
999873 cve - 2019 - 0604 WEB-MISC Microsoft Windows Sharepoint Server -远程代码执行漏洞 cve, 2019 - 0604
999874 WEB-WORDPRESS Yuzo相关帖子5.12.91中未经验证的存储跨站点脚本漏洞 https://www.wordfence.com/blog/2019/04/yuzo-related-posts-zero-day-vulnerability-exploited-in-the-wild
签名更新版本33