This X-Press Update™ product enhancement (XPU), featuring Virtual Patch ™ technology, includes 15 new events to provide protection for vulnerabilities in Cisco call manager, Real Player file formats and a critical vulnerability in Microsoft’s Image Color Management (ICM) library. For information regarding this critical vulnerability, please see the X-Force Alert http://xforce.iss.net/xforce/alerts/id/198. Blocking for 27 existing events has also been enabled.



Checks:

RiskVulnIDCheck NameCategory
Low5156HTML_XSS_AttemptUnauthorized Access Attempt
Low16436SoftEther_Hub_AdministrationSuspicious Activity
Low16436SSL_SoftEther_DetectedSuspicious Activity
High16823SMB_ATService_ConnectUnauthorized Access Attempt
Low19053Cisco_CallMgrDB_DoSDenial of Service
High19054Cisco_CallMgrDB_BoUnauthorized Access Attempt
High20163RAM_Domain_OverflowUnauthorized Access Attempt
High20713IMAP_Imail_Status_OverflowUnauthorized Access Attempt
High20821CHM_DirChunkSize_BoUnauthorized Access Attempt
High21174IMAP_Tag_OverflowUnauthorized Access Attempt
Low21175XDMCP_Session_AcceptedProtocol Signature
Low21177XDMCP_QueryProtocol Signature
High21221ICC_Profile_Tag_OverflowUnauthorized Access Attempt
Low21259HTTP_Unknown_ProtocolProtocol Signature
High21307HTML_IE_ActiveX_Loader_Heap_CorruptionUnauthorized Access Attempt

If you are an existing customer or partner, and you wish to download X-Press Updates from our download center, click here.