ADC

Signature update version 126

New signatures rules are generated for the vulnerabilities identified in the week 2024-03-15. You can download and configure these signature rules to protect your appliance from security vulnerable attacks.

Signature version

Signature version 126 applicable for NetScaler 11.1, NetScaler 12.0, Citrix ADC 12.1, Citrix ADC 13.0, NetScaler 13.1, NetScaler 14.1 platforms.

Note

Enabling Post body and Response body signature rules might affect NetScaler CPU.

Common Vulnerability Entry (CVE) insight

Following is a list of signature rules, CVE IDs, and its description.

Signature rule CVE ID Description
998521 CVE-2024-27198 WEB-MISC JetBrains TeamCity Prior to 2023.11.4 - Authentication Bypass Vulnerability (CVE-2024-27198)
998522 CVE-2024-25065 WEB-MISC Apache Ofbiz Prior 18.12.12 - Authentication Bypass Vulnerability (CVE-2024-25065)
998523 CVE-2024-20738 WEB-MISC Adobe Framemaker Publishing Server Prior to 2022 Update 2 - Authentication Bypass Via /doxserver/ (CVE-2024-20738)
998524 CVE-2024-20738 WEB-MISC Adobe Framemaker Publishing Server Prior to 2022 Update 2 - Authentication Bypass Via /server/ (CVE-2024-20738)
998525 CVE-2024-1708 WEB-MISC ConnectWise ScreenConnect Prior to 23.9.8 - Path Traversal Vulnerability via ZipSlip Attack (CVE-2024-1708)
998526 CVE-2024-1071 WEB-WORDPRESS Ultimate Member From 2.1.3 To 2.8.2 - SQL Injection Vulnerability (CVE-2024-1071)
998527 CVE-2023-5204 WEB-WORDPRESS AI ChatBot Up To 4.8.9 - SQL Injection Vulnerability (CVE-2023-5204)
998528 CVE-2023-44313 WEB-MISC Apache ServiceComb Service-Center Prior to 2.2.0 - Server-Side Request Forgery Vulnerability (CVE-2023-44313)
998529 CVE-2023-41474 WEB-MISC Ivanti Avalanche Up to 6.3.4.153 - Path Traversal Vulnerability (CVE-2023-41474)
998530 CVE-2023-41474 WEB-MISC Ivanti Avalanche Up to 6.3.4.153 - Path Traversal Vulnerability (CVE-2023-41474)
998531 CVE-2023-40597 WEB-MISC Splunk Enterprise Prior to 8.2.12 9.0.6 and 9.1.1 - Absolute Path Traversal Vulnerability (CVE-2023-40597)
Signature update version 126