Critical: This Content Update contains 20 new events to address vulnerabilities in VoIP, LDAP, Javascript, and a critical vulnerability in Microsoft Exchange Server. Also in this XPU are 2 new blocking responses and 4 security content updates. Refer to the following X-Force alert for details about the critical vulnerability: http://xforce.iss.net/xforce/alerts/id/221



Checks:

RiskVulnIDCheck NameCategory
Medium14105HTML_JS_showHelp_Code_ExecUnauthorized Access Attempt
High20610HTTP_MailEnable_Auth_OverflowUnauthorized Access Attempt
Low24605LDAP_Sun_Search_DosDenial of Service
Medium24637Zip_Directory_TraversalSuspicious Activity
High24872ARJ_Header_Block_BOUnauthorized Access Attempt
High24923Script_IE_IsComponentInstalled_BOUnauthorized Access Attempt
High25006JavaScript_WScript_Shell_ObjectUnauthorized Access Attempt
High25556Email_Exchange_Calendar_MalformedUnauthorized Access Attempt
Low25557JavaScript_Flash_AddressBar_SpoofingSuspicious Activity
Low25559MSRPC_MSDTC_VA_DoSDenial of Service
Low25845VOIP_DRDoSDenial of Service
Low25847VOIP_New_Call_DosDenial of Service
Medium25978HTML_Object_Styles_OverflowUnauthorized Access Attempt
Low26094SSL_Google_Desktop_IndexingSuspicious Activity
Low26098HTTP_Google_Desktop_InstalledSuspicious Activity
Medium26121Proxy_Bounce_DeepSuspicious Activity
Medium26128HTTP_GET_SQL_Select_CountPre-attack Probe
Medium26128HTTP_POST_SQL_Select_CountPre-attack Probe
Low26146VOIP_Account_Without_PasswdProtocol Signature
Medium26147VOIP_Brute_ForceUnauthorized Access Attempt

If you are an existing customer or partner, and you wish to download X-Press Updates from our download center, click here.