CRITICAL: Proventia 22.25 contains 21 new events, including protocol anomaly detections, signatures for SunRPC, signatures for Helix Server, improved detection of MSRPC attacks, and additional protection against threats from exploitation of a cross-zone privilege escalation vulnerability in Internet Explorer. See the following X-Force Alert for more information: http://xforce.iss.net/xforce/alerts/id/177.



Checks:

RiskVulnIDCheck NameCategory
High4939RPC_Statd_MyName_Format_StringUnauthorized Access Attempt
High6758Oracle_Listener_BoUnauthorized Access Attempt
High7069RPC_TTDBServer_Format_StringUnauthorized Access Attempt
High8971Sunrpc_rwall_Msg_Format_StringUnauthorized Access Attempt
High10847MySQL_Change_User_Auth_BypassSuspicious Activity
High11108CVS_Directory_Double_FreeUnauthorized Access Attempt
High12444HTTP_IE_Script_HRAlign_OverflowUnauthorized Access Attempt
High13004Helix_RealServer_OverflowUnauthorized Access Attempt
Medium14077HTTP_IIS_TrackSuspicious Activity
High15039HTTP_Negotiate_SSP_ASN1_OverflowDenial of Service
High15166Konik_TCP_ResponseUnauthorized Access Attempt
Medium16119Email_Outlook_URL_SpoofSuspicious Activity
Low16252HTTP_SkypeProtocol Signature
High16314SSL_Challenge_Length_OverflowUnauthorized Access Attempt
Low16385Sunrpc_rwall_MessageProtocol Signature
Medium16386Sunrpc_rwall_Message_OverflowSuspicious Activity
Medium16394HTTP_IE_ADODB_Stream_SaveToFileSuspicious Activity
Medium16430CVS_Request_Path_OverflowUnauthorized Access Attempt
Medium16431CVS_Request_Argument_OverflowUnauthorized Access Attempt
Medium16432CVS_Request_Tag_OverflowUnauthorized Access Attempt
Medium16433CVS_Request_Option_OverflowUnauthorized Access Attempt

If you are an existing customer or partner, and you wish to download X-Press Updates from our download center, click here.