Critical: This X-Press Update™ product enhancement (XPU), featuring Virtual Patch ™ technology, contains 22 new events, for new Critical vulnerabilities in Microsoft's Plug and Play services and Microsoft's print spooler service and 1 new blocking response. Also in this XPU are 13 security content updates. This XPU also contains events for Brightstor backup agents, XML, VoIP and SCADA. For information regarding the critical vulnerabilities, please see the X-Force Advisory http://xforce.iss.net/xforce/alerts/id/202 and the X-Force Alert http://xforce.iss.net/xforce/alerts/id/203.
Checks:
| Risk | VulnID | Check Name | Category |
| Low | 11835 | PAM_Configuration_Error | Protocol Signature |
| High | 19320 | BrightStor_Discovery_Overflow | Unauthorized Access Attempt |
| High | 20042 | HTTP_Lotus_Domino_Date_Overflow | Unauthorized Access Attempt |
| Low | 20185 | SIP_Version_Not2 | Suspicious Activity |
| Medium | 20305 | Email_Executable_Content | Suspicious Activity |
| High | 20617 | XML_IE_InfoBar_Bypass | Unauthorized Access Attempt |
| High | 21194 | XML_RPC_PHP_CmdExec | Unauthorized Access Attempt |
| High | 21195 | HTTP_Smuggling_Apache_Chunked | Unauthorized Access Attempt |
| High | 21346 | Zlib_Inflate_Table_BO | Unauthorized Access Attempt |
| Low | 21407 | RDP_Login_Read_Overflow | Denial of Service |
| High | 21416 | FTP_Reatle_Backdoor | Unauthorized Access Attempt |
| Low | 21534 | SIP_Long_Method_Name | Protocol Signature |
| Low | 21545 | SIP_Unknown_Method_Name | Protocol Signature |
| Medium | 21573 | Scada_DNP_BroadcastRequest | Denial of Service |
| Low | 21574 | Scada_DNP_ColdRestart | Denial of Service |
| Low | 21575 | Scada_DNP_DisableUnsolResponses | Denial of Service |
| Low | 21577 | Scada_DNP_StopApplication | Denial of Service |
| Low | 21578 | Scada_DNP_WarmRestart | Denial of Service |
| High | 21604 | MSRPC_Spoolss_Overflow | Unauthorized Access Attempt |
| High | 21656 | BrightStor_BackupAgent_Overflow | Unauthorized Access Attempt |
| High | 21701 | Image_JPEG_IE_Size_Overflow | Unauthorized Access Attempt |
| High | 21701 | Image_JPEG_IE_Component_Overflow | Unauthorized Access Attempt |
If you are an existing customer or partner, and you wish to download X-Press Updates from our download center, click here.
