New Filters: 44563: TCP: Progress Software WhatsUp Gold WriteDataFile Directory Traversal Vulnerability (ZDI-24-892) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: Critical - Description: This filter detects an attempt to exploit a directory traversal vulnerability in Progress Software WhatsUp Gold. - Deployments: - Deployment: Default (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-4883 CVSS 9.8 - Zero Day Initiative: ZDI-24-892 - Classification: Vulnerability - Access Validation - Protocol: TCP (Generic) - Platform: Other Server Application or Service - Release Date: August 06, 2024 44569: HTTP: ServiceNow Template Injection Mitigation Bypass Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: High - Description: This filter detects an attempt to exploit a template injection mitigation bypass vulnerability in ServiceNow cloud computing platform. - Deployments: - Deployment: Default (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-5178 CVSS 6.9 - Classification: Vulnerability - Input Validation (Command injection, XSS, SQL injection, etc) - Protocol: HTTP - Platform: Multi-Platform Server Application or Service - Release Date: August 06, 2024 44573: ZDI-CAN-24775: Zero Day Initiative Vulnerability (Apache OFBiz) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Exploits - Severity: Critical - Description: This filter provides protection against exploitation of a zero-day vulnerability affecting Apache OFBiz. - Deployments: - Deployment: Default (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44574: ZDI-CAN-24998: Zero Day Initiative Vulnerability (Microsoft Internet Explorer) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Microsoft Internet Explorer. - Deployments: - Deployment: Security-Optimized (Block / Notify) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44575: HTTP: OpenCart Archive Extraction Directory Traversal Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: Critical - Description: This filter detects an attempt to exploit a directory traversal vulnerability in Opencart. - Deployments: - Deployment: Security-Optimized (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-21518 CVSS 6.5 - Classification: Vulnerability - Other - Protocol: HTTP - Platform: Multi-Platform Server Application or Service - Release Date: August 06, 2024 44576: ZDI-CAN-24998: Zero Day Initiative Vulnerability (Microsoft Internet Explorer) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Microsoft Internet Explorer. - Deployments: - Deployment: Security-Optimized (Block / Notify) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44577: HTTP: Apache HugeGraph Gremlin Code Injection Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: Critical - Description: This filter detects an attempt to exploit a code injection vulnerability in Apache HugeGraph. - Deployments: - Deployment: Security-Optimized (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-27348 CVSS 9.1 - Classification: Vulnerability - Input Validation (Command injection, XSS, SQL injection, etc) - Protocol: HTTP - Platform: UNIX/Linux Server Application or Service - Release Date: August 06, 2024 44578: ZDI-CAN-24974: Zero Day Initiative Vulnerability (Microsoft Internet Explorer) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Microsoft Internet Explorer. - Deployments: - Deployment: Default (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44579: HTTP: GitLab Community and Enterprise Edition Pin Menu Denial-of-Service Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: High - Description: This filter detects an attempt to exploit a denial-of-service vulnerability in GitLab Community and Enterprise Edition. - Deployments: - Deployment: Default (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-2454 - Classification: Vulnerability - Denial of Service (Crash/Reboot) - Protocol: HTTP - Platform: Multi-Platform Server Application or Service - Release Date: August 06, 2024 44580: HTTP: HyperSQL Database Security Bypass Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Exploits - Severity: Critical - Description: This filter detects an attempt to exploit a security bypass vulnerability in HyperSQL Database. - Deployments: - Deployment: Security-Optimized (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2022-41853 CVSS 9.8 - Classification: Vulnerability - Input Validation (Command injection, XSS, SQL injection, etc) - Protocol: TCP (Generic) - Platform: Multi-Platform Server Application or Service - Release Date: August 06, 2024 44581: ZDI-CAN-23502: Zero Day Initiative Vulnerability (Schneider Electric EcoStruxure) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against the exploitation of a zero-day vulnerability affecting Schneider Electric EcoStruxure. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44582: ZDI-CAN-24336,24339,24341,24344,24405: Zero Day Initiative Vulnerability (Veritas Enterprise Vault) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Veritas Enterprise Vault. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44583: ZDI-CAN-24695,24696,24697,24698: Zero Day Initiative Vulnerability (Veritas Enterprise Vault) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Veritas Enterprise Vault. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44584: ZDI-CAN-24831: Zero Day Initiative Vulnerability (Microsoft Sharepoint) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against exploitation of a zero-day vulnerability affecting Microsoft Sharepoint. - Deployments: - Deployment: Default (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44595: HTTP: Microsoft SharePoint Server BDC Base64 FindFiltered Reflection Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Category: Vulnerabilities - Severity: Critical - Description: This filter detects an attempt to exploit an unsafe reflection vulnerability in Microsoft SharePoint. - Deployments: - Deployment: Default (Block / Notify) - References: - Common Vulnerabilities and Exposures: CVE-2024-38024 - Classification: Vulnerability - Other - Protocol: HTTP - Platform: Windows Server Application or Service - Release Date: August 06, 2024 44596: ZDI-CAN-24828: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Exploits - Severity: Critical - Description: This filter protects against the exploitation of a zero-day vulnerability affecting Delta Electronics CNCSoft-G2. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44597: ZDI-CAN-24829: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Exploits - Severity: Critical - Description: This filter protects against the exploitation of a zero-day vulnerability affecting Delta Electronics CNCSoft-G2. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44598: ZDI-CAN-24910: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Exploits - Severity: Critical - Description: This filter protects against the exploitation of a zero-day vulnerability affecting Delta Electronics CNCSoft-G2. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 44599: ZDI-CAN-24788: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: Not available. - Requires: IPS N-Platform, NX-Platform, or TPS models. - Category: Vulnerabilities - Severity: Critical - Description: This filter protects against the exploitation of a zero-day vulnerability affecting Delta Electronics CNCSoft-G2. - Deployments: - Deployment: Security-Optimized (Block / Notify / Trace) - Classification: Vulnerability - Other - Protocol: Other Protocol - Platform: Other Server Application or Service - Release Date: August 06, 2024 Modified Filters (logic changes): * = Enabled in Default deployments 40357: HTTP: Cisco Nexus Dashboard Fabric Controller Insecure Deserialization Vulnerability (ZDI-22-506) - IPS Version: 3.6.2 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Detection logic updated. - Release Date: September 28, 2021 - Last Modified Date: August 06, 2024 41680: SMTP: Microsoft Outlook Denial-of-Service Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Detection logic updated. - Vulnerability references updated. - Release Date: September 06, 2022 - Last Modified Date: August 06, 2024 * 42776: ISAKMP: ZyXEL Multiple Products Command Injection Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Detection logic updated. - Release Date: June 06, 2023 - Last Modified Date: August 06, 2024 43201: HTTP: RARLAB WinRAR File Extension Spoofing Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Detection logic updated. - Release Date: September 19, 2023 - Last Modified Date: August 06, 2024 43317: HTTP: Ivanti Avalanche FileStoreConfig Arbitrary File Upload Vulnerability (ZDI-24-056,ZDI-24-504) - IPS Version: 3.9.5 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Detection logic updated. - Release Date: October 10, 2023 - Last Modified Date: August 06, 2024 43595: HTTP: Samsung Galaxy S23 McsWebViewActivity Security Bypass Vulnerability (Pwn2Own ZDI-24-829) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43595: ZDI-CAN-22409: Zero Day Initiative Vulnerability (Samsung Galaxy S23)". - Description updated. - Detection logic updated. - Vulnerability references updated. - Release Date: December 26, 2023 - Last Modified Date: August 06, 2024 43596: HTTP: Samsung Galaxy S23 Instant Plays Improper Input Validation Vulnerability (Pwn2Own ZDI-24-830) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43596: ZDI-CAN-22368: Zero Day Initiative Vulnerability (Samsung Galaxy S23)". - Description updated. - Detection logic updated. - Vulnerability references updated. - Release Date: December 26, 2023 - Last Modified Date: August 06, 2024 * 43601: HTTP: Apache OFBiz XMLRPC Insecure Deserialization Vulnerability - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Detection logic updated. - Release Date: January 02, 2024 - Last Modified Date: August 06, 2024 43843: HTTP: Trend Micro Apex One modOSCE SQL Injection Vulnerability (ZDI-24-897) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43843: ZDI-CAN-22968: Zero Day Initiative Vulnerability (Trend Micro Apex One)". - Description updated. - Detection logic updated. - Vulnerability references updated. - Release Date: February 27, 2024 - Last Modified Date: August 06, 2024 Modified Filters (metadata changes only): * = Enabled in Default deployments 12138: RDP: Windows Remote Desktop Use After Free (ZDI-12-044) - IPS Version: 1.0.0 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Deployments updated and are now: - No Deployments. - Release Date: March 13, 2012 - Last Modified Date: August 06, 2024 12177: RDP: Microsoft Remote Desktop Protocol Use After Free Vulnerability (ZDI-12-044) - IPS Version: 1.0.0 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Deployments updated and are now: - No Deployments. - Release Date: March 20, 2012 - Last Modified Date: August 06, 2024 13855: TCP: XML External Entity (XXE) Usage - IPS Version: 1.0.0 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Description updated. - Vulnerability references updated. - Release Date: April 28, 2014 - Last Modified Date: August 06, 2024 32753: HTTP: Adobe Acrobat Pro ImageConversion JPEG Parsing Out-Of-Bounds Read Vulnerability (ZDI-18-1114) - IPS Version: 3.6.2 and after. - TPS Version: 4.0.0 and after. - vTPS Version: 4.0.1 and after. - Miscellaneous modification. - Release Date: July 31, 2018 - Last Modified Date: August 06, 2024 42238: HTTP: Parse Server literalizeRegexPart SQL Injection Vulnerability (ZDI-24-896,24-900) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "42238: HTTP: Parse Server literalizeRegexPart SQL Injection Vulnerability (ZDI-24-896)". - Description updated. - Vulnerability references updated. - Release Date: January 31, 2023 - Last Modified Date: August 06, 2024 43938: HTTP: NETGEAR ProSAFE Network Management System SQL Injection Vulnerability (ZDI-24-901) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43938: ZDI-CAN-23399: Zero Day Initiative Vulnerability (NETGEAR ProSAFE Network Management System)". - Description updated. - Vulnerability references updated. - Release Date: March 05, 2024 - Last Modified Date: August 06, 2024 43943: HTTP: Centreon updateServiceHost_MC SQL Injection Vulnerability (ZDI-24-595,ZDI-24-596,ZDI-24-899) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43943: HTTP: Centreon updateServiceHost_MC SQL Injection Vulnerability (ZDI-24-595,ZDI-24-596)". - Description updated. - Vulnerability references updated. - Release Date: March 05, 2024 - Last Modified Date: August 06, 2024 43951: HTTP: NETGEAR ProSAFE Network Management System SQL Injection Vulnerability (ZDI-24-902) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "43951: ZDI-CAN-23207: Zero Day Initiative Vulnerability (NETGEAR ProSAFE Network Management System)". - Description updated. - Vulnerability references updated. - Release Date: March 12, 2024 - Last Modified Date: August 06, 2024 44133: HTTP: Delta Electronics CNCSoft-G2 ALM Stack-based Buffer Overflow Vulnerability (ZDI-24-920) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44133: ZDI-CAN-23575: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44134: HTTP: Delta Electronics CNCSoft-G2 ALM Stack-based Buffer Overflow Vulnerability (ZDI-24-919) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44134: ZDI-CAN-23574: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44135: HTTP: Delta Electronics CNCSoft-G2 ALM Stack-based Buffer Overflow Vulnerability (ZDI-24-921) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44135: ZDI-CAN-23576: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44136: HTTP: Delta Electronics CNCSoft-G2 DPAX Stack-based Buffer Overflow Vulnerability (ZDI-24-927) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44136: ZDI-CAN-23648: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44137: HTTP: Delta Electronics CNCSoft-G2 ALM Stack-based Buffer Overflow Vulnerability (ZDI-24-923) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44137: ZDI-CAN-23578: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44139: HTTP: Delta Electronics CNCSoft-G2 ALM Stack-based Buffer Overflow Vulnerability (ZDI-24-918,924) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44139: ZDI-CAN-23573, 23579: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44141: HTTP: Delta Electronics CNCSoft-G2 DPAX Stack-based Buffer Overflow Vulnerability (ZDI-24-925) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44141: ZDI-CAN-23580: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44142: HTTP: Delta Electronics CNCSoft-G2 DPAX Stack-based Buffer Overflow Vulnerability (ZDI-24-926) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44142: ZDI-CAN-23581: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44143: HTTP: Delta Electronics CNCSoft-G2 DPAX Stack-based Buffer Overflow Vulnerability (ZDI-24-940) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44143: ZDI-CAN-23841: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 23, 2024 - Last Modified Date: August 06, 2024 44161: HTTP: Delta Electronics CNCSoft-G2 CMT Stack-based Buffer Overflow Vulnerability (ZDI-24-922) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44161: ZDI-CAN-23577: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 30, 2024 - Last Modified Date: August 06, 2024 44165: HTTP: Delta Electronics CNCSoft-G2 DPAX Stack-based Buffer Overflow Vulnerability (ZDI-24-934) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44165: ZDI-CAN-23770: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 30, 2024 - Last Modified Date: August 06, 2024 44194: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-933) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44194: ZDI-CAN-23769: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 30, 2024 - Last Modified Date: August 06, 2024 44195: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-938) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44195: ZDI-CAN-23831: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 30, 2024 - Last Modified Date: August 06, 2024 44196: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-of-Bounds Read Vulnerability (ZDI-24-942) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44196: ZDI-CAN-23914: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: April 30, 2024 - Last Modified Date: August 06, 2024 44229: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-943) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44229: ZDI-CAN-23915: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44230: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-944) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44230: ZDI-CAN-23916: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44231: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-Of-Bounds Write Vulnerability (ZDI-24-945) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44231: ZDI-CAN-23917: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44232: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-Of-Bounds Write Vulnerability (ZDI-24-946) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44232: ZDI-CAN-23918: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44233: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-Of-Bounds Write Vulnerability (ZDI-24-947) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44233: ZDI-CAN-23919: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44234: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-Of-Bounds Read Vulnerability (ZDI-24-948) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44234: ZDI-CAN-23920: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44240: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-949) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44240: ZDI-CAN-23923: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44241: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Out-Of-Bounds Write Vulnerability (ZDI-24-950) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44241: ZDI-CAN-23924: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44242: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Buffer Overflow Vulnerability (ZDI-24-951) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44242: ZDI-CAN-23925: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 44243: HTTP: Delta Electronics CNCSoft-G2 DPAX File Parsing Memory Corruption Vulnerability (ZDI-24-952) - IPS Version: 3.9.5 and after. - TPS Version: 5.2.2 and after. - vTPS Version: 5.2.2 and after. - Name changed from "44243: ZDI-CAN-23926: Zero Day Initiative Vulnerability (Delta Electronics CNCSoft-G2)". - Description updated. - Vulnerability references updated. - Release Date: May 07, 2024 - Last Modified Date: August 06, 2024 Removed Filters: None |