* Talos combines our security experts from TRAC, SecApps, and VRT teams.
This SRU number: 2018-01-22-001
Previous SRU number: 2018-01-19-001
Applies to:
This SEU number: 1787
Previous SEU: 1786
Applies to:
This is the complete list of rules modified in SRU 2018-01-22-001 and SEU 1787.
The format of the file is:
GID - SID - Rule Group - Rule Message - Policy State
The Policy State refers to each default Sourcefire policy, Connectivity, Balanced and Security.
The default passive policy state is the same as the Balanced policy state with the exception of alert being used instead of drop.
Note: Unless stated explicitly, the rules are for the series of products listed above.
GID | SID | Rule Group | Rule Message | Policy State | ||
---|---|---|---|---|---|---|
Con. | Bal. | Sec. | ||||
1 | 15850 | OS-WINDOWS | Remote Desktop orderType remote code execution attempt | off | off | off |
1 | 21656 | SERVER-APACHE | Apache Struts remote code execution attempt - GET parameter | off | drop | drop |
1 | 23631 | SERVER-APACHE | Apache Struts remote code execution attempt - POST parameter | off | drop | drop |
1 | 29409 | FILE-PDF | Adobe Acrobat Reader javascript toolbar button use after free attempt | drop | drop | drop |
1 | 29410 | FILE-PDF | Adobe Acrobat Reader javascript toolbar button use after free attempt | off | drop | drop |
1 | 35332 | FILE-PDF | Adobe Reader PDF document closed prior to javascript termination use after free attempt | off | off | drop |
1 | 36212 | FILE-OTHER | Libgraphite LocaLookup out-of-bounds read attempt | off | drop | drop |
1 | 36213 | FILE-OTHER | Libgraphite LocaLookup out-of-bounds read attempt | off | drop | drop |
1 | 36216 | FILE-OTHER | libgraphite TTF opcode handling out of bounds read attempt | off | off | drop |
1 | 36217 | FILE-OTHER | libgraphite TTF opcode handling out of bounds read attempt | off | off | drop |
1 | 36385 | FILE-OTHER | SIL LibGraphite BracketPairStack out of bounds access exploit attempt | off | drop | drop |
1 | 36386 | FILE-OTHER | SIL LibGraphite BracketPairStack out of bounds access exploit attempt | off | drop | drop |
1 | 36387 | FILE-OTHER | Libgraphite context item handling arbitrary code execution attempt | off | off | drop |
1 | 36388 | FILE-OTHER | Libgraphite context item handling arbitrary code execution attempt | off | off | drop |
1 | 36751 | FILE-OFFICE | Microsoft Office Excel MdCallBack out of bounds read attempt | off | drop | drop |
1 | 36752 | FILE-OFFICE | Microsoft Office Excel MdCallBack out of bounds read attempt | off | drop | drop |
1 | 36903 | SERVER-OTHER | Cisco ASA IKEv2 invalid fragment length heap buffer overflow attempt | off | drop | drop |
1 | 37229 | FILE-FLASH | Adobe Flash Player MovieClip method use after free attempt | off | drop | drop |
1 | 37230 | FILE-FLASH | Adobe Flash Player MovieClip method use after free attempt | off | drop | drop |
1 | 37234 | FILE-FLASH | Adobe Flash Player removeMovieClip use after free attempt | off | drop | drop |
1 | 37235 | FILE-FLASH | Adobe Flash Player removeMovieClip use after free attempt | off | drop | drop |
1 | 37257 | BROWSER-IE | Microsoft Internet Explorer mapi32x.dll dll-load exploit attempt | off | drop | drop |
1 | 37258 | BROWSER-IE | Microsoft Internet Explorer mapi32x.dll dll-load exploit attempt | off | drop | drop |
1 | 37259 | FILE-OFFICE | Microsoft Office Excel mso20win32client use after free attempt | off | drop | drop |
1 | 37260 | FILE-OFFICE | Microsoft Office Excel mso20win32client use after free attempt | off | drop | drop |
1 | 37261 | FILE-OFFICE | Microsoft Office mfplat.dll dll-load exploit attempt | off | drop | drop |
1 | 37262 | FILE-OFFICE | Microsoft Office mfplat.dll dll-load exploit attempt | off | drop | drop |
1 | 37263 | FILE-OFFICE | Microsoft Office api-ms-win-core-winrt-l1-1-0.dll dll-load exploit attempt | off | drop | drop |
1 | 37264 | FILE-OFFICE | Microsoft Office api-ms-win-core-winrt-l1-1-0.dll dll-load exploit attempt | off | drop | drop |
1 | 37265 | FILE-OFFICE | Microsoft Office metafile conversion out of bounds read attempt | off | drop | drop |
1 | 37266 | FILE-OFFICE | Microsoft Office metafile conversion out of bounds read attempt | off | drop | drop |
1 | 37269 | OS-WINDOWS | Microsoft Windows 10 low integrity level NTFS mount reparse point bypass attempt | off | drop | drop |
1 | 37270 | OS-WINDOWS | Microsoft Windows 10 low integrity level NTFS mount reparse point bypass attempt | off | drop | drop |
1 | 37271 | OS-WINDOWS | Microsoft Windows 10 low integrity level NTFS mount reparse point bypass attempt | off | drop | drop |
1 | 37272 | OS-WINDOWS | Microsoft Windows 10 low integrity level NTFS mount reparse point bypass attempt | off | drop | drop |
1 | 37275 | OS-WINDOWS | Microsoft Windows feclient.dll dll-load exploit attempt | off | drop | drop |
1 | 37276 | OS-WINDOWS | Microsoft Windows feclient.dll dll-load exploit attempt | off | drop | drop |
1 | 37277 | OS-WINDOWS | Microsoft Windows devenum.dll device moniker underflow attempt | off | drop | drop |
1 | 37278 | OS-WINDOWS | Microsoft Windows devenum.dll device moniker underflow attempt | off | drop | drop |
1 | 37371 | SERVER-OTHER | OpenSSH insecure roaming key exchange attempt | off | drop | drop |
1 | 37397 | FILE-PDF | Adobe Acrobat Reader malformed UTF-16 string memory corruption attempt | off | drop | drop |
1 | 37398 | FILE-PDF | Adobe Acrobat Reader malformed UTF-16 string memory corruption attempt | off | drop | drop |
1 | 37399 | FILE-PDF | Adobe Acrobat Reader custom string length function memory corruption attempt | off | drop | drop |
1 | 37400 | FILE-PDF | Adobe Acrobat Reader custom string length function memory corruption attempt | off | drop | drop |
1 | 37405 | FILE-PDF | Adobe Reader addAnnot JavaScript based memory corruption attempt | off | drop | drop |
1 | 37406 | FILE-PDF | Adobe Reader addAnnot JavaScript based memory corruption attempt | off | drop | drop |
1 | 37424 | FILE-PDF | Adobe Acrobat Reader ExtGState double free attempt | off | off | drop |
1 | 37425 | FILE-PDF | Adobe Acrobat Reader ExtGState double free attempt | off | off | drop |
1 | 37433 | FILE-PDF | Adobe Reader setPersistent use after free attempt | off | off | drop |
1 | 37434 | FILE-PDF | Adobe Reader setPersistent use after free attempt | off | off | drop |
1 | 37435 | OS-LINUX | Linux Kernel keyring object exploit download attempt | off | drop | drop |
1 | 37436 | OS-LINUX | Linux Kernel keyring object exploit download attempt | off | drop | drop |
1 | 37437 | OS-LINUX | Linux Kernel keyring object exploit download attempt | off | drop | drop |
1 | 37438 | OS-LINUX | Linux Kernel keyring object exploit download attempt | off | drop | drop |
1 | 37448 | FILE-PDF | Adobe Acrobat U3D Bone Weight Modifier memory corruption attempt | off | drop | drop |
1 | 37449 | FILE-PDF | Adobe Acrobat U3D Bone Weight Modifier memory corruption attempt | off | drop | drop |
1 | 37450 | FILE-PDF | Adobe Reader JPEG2000 chroma sub-pattern memory corruption attempt | off | drop | drop |
1 | 37451 | FILE-PDF | Adobe Reader JPEG2000 chroma sub-pattern memory corruption attempt | off | drop | drop |
1 | 37460 | FILE-PDF | Adobe Reader Graphic State Parameter Dictionaries use after free attempt | off | drop | drop |
1 | 37461 | FILE-PDF | Adobe Reader Graphic State Parameter Dictionaries use after free attempt | off | drop | drop |
1 | 37464 | FILE-PDF | Adobe Acrobat Reader JavaScript model privileged API bypass attempt | off | drop | drop |
1 | 37465 | FILE-PDF | Adobe Acrobat Reader JavaScript model privileged API bypass attempt | off | drop | drop |
1 | 37493 | FILE-OTHER | lhasa decode_level3_header heap corruption attempt | off | off | drop |
1 | 37494 | FILE-OTHER | lhasa decode_level3_header heap corruption attempt | off | off | drop |
1 | 37517 | FILE-OTHER | Apple OSX local privilege escalation attempt | off | off | drop |
1 | 37518 | FILE-OTHER | Apple OSX local privilege escalation attempt | off | off | drop |
1 | 37519 | FILE-OTHER | Intel HD Graphics Windows kernel driver local privilege escalation attempt | off | off | drop |
1 | 37520 | FILE-OTHER | Intel HD Graphics Windows kernel driver local privilege escalation attempt | off | off | drop |
1 | 37553 | BROWSER-IE | Microsoft Internet Explorer CDATA use-after-free attempt | off | drop | drop |
1 | 37554 | BROWSER-IE | Microsoft Internet Explorer CDATA use-after-free attempt | off | drop | drop |
1 | 37555 | FILE-OFFICE | Microsoft Office msdaora.dll dll-load exploit attempt | off | drop | drop |
1 | 37556 | FILE-OFFICE | Microsoft Office phoneinfo.dll dll-load exploit attempt | off | drop | drop |
1 | 37557 | FILE-OFFICE | Microsoft Office msdaora.dll dll-load exploit attempt | off | drop | drop |
1 | 37558 | FILE-OFFICE | Microsoft Office phoneinfo.dll dll-load exploit attempt | off | drop | drop |
1 | 37559 | FILE-OFFICE | Microsoft Office Word rtf file ffdefres integer underflow attempt | off | drop | drop |
1 | 37560 | FILE-OFFICE | Microsoft Office Word rtf file ffdefres integer underflow attempt | off | drop | drop |
1 | 37561 | FILE-OFFICE | Microsoft Office Word missing dpinfo structure integer overflow attempt | off | off | drop |
1 | 37562 | FILE-OFFICE | Microsoft Office Word missing dpinfo structure integer overflow attempt | off | off | drop |
1 | 37563 | FILE-OFFICE | Microsoft Office Word missing dpinfo structure integer overflow attempt | off | off | drop |
1 | 37564 | FILE-OFFICE | Microsoft Office Word missing dpinfo structure integer overflow attempt | off | off | drop |
1 | 37565 | FILE-PDF | Microsoft Reader dynamic object stream uninitialized memory corruption attempt | off | drop | drop |
1 | 37566 | FILE-PDF | Microsoft Reader dynamic object stream uninitialized memory corruption attempt | off | drop | drop |
1 | 37567 | OS-WINDOWS | Microsoft Windows WmipReceiveNotifications out of bounds write attempt | off | drop | drop |
1 | 37568 | OS-WINDOWS | Microsoft Windows WmipReceiveNotifications out of bounds write attempt | off | drop | drop |
1 | 37569 | OS-WINDOWS | Microsoft Windows WmipReceiveNotifications out of bounds write attempt | off | drop | drop |
1 | 37570 | OS-WINDOWS | Microsoft Windows WmipReceiveNotifications out of bounds write attempt | off | drop | drop |
1 | 37575 | BROWSER-IE | Microsoft Edge CTextBlock out of bounds read attempt | off | drop | drop |
1 | 37576 | BROWSER-IE | Microsoft Edge CTextBlock out of bounds read attempt | off | drop | drop |
1 | 37577 | FILE-OTHER | Microsoft Windows Journal CWispTiss use after free attempt | off | drop | drop |
1 | 37578 | FILE-OTHER | Microsoft Windows Journal CWispTiss use after free attempt | off | drop | drop |
1 | 37579 | FILE-OFFICE | Microsoft Powerpoint shape object null pointer dereference attempt | off | drop | drop |
1 | 37580 | FILE-OFFICE | Microsoft Powerpoint shape object null pointer dereference attempt | off | drop | drop |
1 | 37581 | BROWSER-IE | Microsoft Edge SysFreeString double free attempt | off | drop | drop |
1 | 37582 | BROWSER-IE | Microsoft Edge SysFreeString double free attempt | off | drop | drop |
1 | 37584 | OS-WINDOWS | Microsoft Windows wind32kfull.sys out of bounds write attempt | off | drop | drop |
1 | 37585 | OS-WINDOWS | Microsoft Windows wind32kfull.sys out of bounds write attempt | off | drop | drop |
1 | 37586 | OS-WINDOWS | Microsoft Windows WebDAV mini redirector driver privilege escalation attempt | off | drop | drop |
1 | 37587 | OS-WINDOWS | Microsoft Windows WebDAV mini redirector driver privilege escalation attempt | off | drop | drop |
1 | 37588 | FILE-OFFICE | Microsoft Office Word BCSRuntime.dll dll-load exploit attempt | off | drop | drop |
1 | 37589 | FILE-OFFICE | Microsoft Office Word OLMAPI32.dll dll-load exploit attempt | off | drop | drop |
1 | 37590 | FILE-OFFICE | Microsoft Office Word BCSRuntime.dll dll-load exploit attempt | off | drop | drop |
1 | 37591 | FILE-OFFICE | Microsoft Office Word OLMAPI32.dll dll-load exploit attempt | off | drop | drop |
1 | 37592 | FILE-OFFICE | Microsoft Office Excel formula length heap corruption attempt | off | drop | drop |
1 | 37593 | FILE-OFFICE | Microsoft Office Excel formula length heap corruption attempt | off | drop | drop |
1 | 37594 | FILE-PDF | Microsoft Windows PDF Library invalid JPX image heap corruption attempt | off | drop | drop |
1 | 37595 | FILE-PDF | Microsoft Windows PDF Library invalid JPX image heap corruption attempt | off | drop | drop |
1 | 37596 | BROWSER-IE | Microsoft Internet Explorer CTextBlock use-after-free attempt | off | drop | drop |
1 | 37597 | BROWSER-IE | Microsoft Internet Explorer CTextBlock use-after-free attempt | off | drop | drop |
1 | 37598 | FILE-OFFICE | Microsoft Office Word external document access use-after-free attempt | off | drop | drop |
1 | 37599 | FILE-OFFICE | Microsoft Office Word external document access use-after-free attempt | off | drop | drop |
1 | 37600 | FILE-OFFICE | Microsoft Powerpoint shape objects null pointer dereference memory corruption attempt | off | drop | drop |
1 | 37601 | FILE-OFFICE | Microsoft Powerpoint shape objects null pointer dereference memory corruption attempt | off | drop | drop |
1 | 37602 | BROWSER-IE | Microsoft Internet Explorer IFRAME object constructor cross site scripting attempt | off | drop | drop |
1 | 37603 | BROWSER-IE | Microsoft Internet Explorer IFRAME object constructor cross site scripting attempt | off | drop | drop |
1 | 37604 | BROWSER-IE | Microsoft Internet Explorer StrCmpNICW string object use after free attempt | off | drop | drop |
1 | 37605 | BROWSER-IE | Microsoft Internet Explorer StrCmpNICW string object use after free attempt | off | drop | drop |
1 | 37612 | BROWSER-IE | Microsoft Internet Explorer CACPWrap object use-after-free attempt | off | drop | drop |
1 | 37613 | BROWSER-IE | Microsoft Internet Explorer CACPWrap object use-after-free attempt | off | drop | drop |
1 | 37614 | BROWSER-IE | Microsoft Internet Explorer CFGBitmap heap code execution attempt | off | drop | drop |
1 | 37615 | BROWSER-IE | Microsoft Internet Explorer CFGBitmap heap code execution attempt | off | drop | drop |
1 | 37674 | SERVER-OTHER | Cisco ASA IKEv1 invalid fragment length heap buffer overflow attempt | off | drop | drop |
1 | 37679 | FILE-FLASH | Adobe Flash player ASNative textField use after free attempt | off | drop | drop |
1 | 37680 | FILE-FLASH | Adobe Flash player ASNative textField use after free attempt | off | drop | drop |
1 | 37687 | SERVER-WEBAPP | Oracle e-Business Suite HR_UTIL_DISP_WEB SQL injection attempt | off | drop | drop |
1 | 37734 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37735 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37736 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37737 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37738 | FILE-FLASH | Adobe Flash Player BlurFilter memory corruption attempt | off | drop | drop |
1 | 37739 | FILE-FLASH | Adobe Flash Player BlurFilter memory corruption attempt | off | drop | drop |
1 | 37740 | FILE-FLASH | Adobe Flash Player BlurFilter memory corruption attempt | off | drop | drop |
1 | 37741 | FILE-FLASH | Adobe Flash Player BlurFilter memory corruption attempt | off | drop | drop |
1 | 37742 | FILE-FLASH | Adobe Flash Player TextLine memory corruption attempt | off | drop | drop |
1 | 37743 | FILE-FLASH | Adobe Flash Player TextLine memory corruption attempt | off | drop | drop |
1 | 37744 | FILE-FLASH | Adobe Flash Player TextLine memory corruption attempt | off | drop | drop |
1 | 37745 | FILE-FLASH | Adobe Flash Player TextLine memory corruption attempt | off | drop | drop |
1 | 37746 | FILE-FLASH | Adobe Flash Player list filter memory corruption attempt | off | drop | drop |
1 | 37747 | FILE-FLASH | Adobe Flash Player list filter memory corruption attempt | off | drop | drop |
1 | 37748 | FILE-FLASH | Adobe Flash Player TextField object Type Confusion Attempt | off | drop | drop |
1 | 37749 | FILE-FLASH | Adobe Flash Player TextField object Type Confusion Attempt | off | drop | drop |
1 | 37750 | FILE-FLASH | Adobe Flash Player FLV invalid reference frame count memory corruption attempt | off | drop | drop |
1 | 37751 | FILE-FLASH | Adobe Flash Player FLV invalid reference frame count memory corruption attempt | off | drop | drop |
1 | 37752 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37753 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37754 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37755 | FILE-FLASH | Adobe Flash Player Point object integer overflow attempt | off | drop | drop |
1 | 37756 | FILE-FLASH | Adobe Flash Player invalid sourceRect copyPixels heap corruption attempt | off | drop | drop |
1 | 37757 | FILE-FLASH | Adobe Flash Player invalid sourceRect copyPixels heap corruption attempt | off | drop | drop |
1 | 37758 | FILE-FLASH | Adobe Flash Player invalid sourceRect copyPixels heap corruption attempt | off | drop | drop |
1 | 37759 | FILE-FLASH | Adobe Flash Player invalid sourceRect copyPixels heap corruption attempt | off | drop | drop |
1 | 37760 | FILE-FLASH | Adobe Flash Player rectangle auxiliary method integer overflow attempt | off | drop | drop |
1 | 37761 | FILE-FLASH | Adobe Flash Player rectangle auxiliary method integer overflow attempt | off | drop | drop |
1 | 37762 | FILE-FLASH | Adobe Flash Player rectangle auxiliary method integer overflow attempt | off | drop | drop |
1 | 37763 | FILE-FLASH | Adobe Flash Player rectangle auxiliary method integer overflow attempt | off | drop | drop |
1 | 37764 | FILE-FLASH | Adobe Flash Player BitmapData method memory corruption attempt | off | drop | drop |
1 | 37765 | FILE-FLASH | Adobe Flash Player BitmapData method memory corruption attempt | off | drop | drop |
1 | 37766 | FILE-FLASH | Adobe Flash Player BitmapData method memory corruption attempt | off | drop | drop |
1 | 37767 | FILE-FLASH | Adobe Flash Player BitmapData method memory corruption attempt | off | drop | drop |
1 | 37768 | FILE-FLASH | Adobe Flash Player ASnative custom getter use after free attempt | off | drop | drop |
1 | 37769 | FILE-FLASH | Adobe Flash Player ASnative custom getter use after free attempt | off | drop | drop |
1 | 37770 | FILE-FLASH | Adobe Flash Player ASnative custom getter use after free attempt | off | drop | drop |
1 | 37771 | FILE-FLASH | Adobe Flash Player ASnative custom getter use after free attempt | off | drop | drop |
1 | 37772 | FILE-FLASH | Adobe Flash Player ActionScript constructor use after free attempt | off | drop | drop |
1 | 37773 | FILE-FLASH | Adobe Flash Player ActionScript constructor use after free attempt | off | drop | drop |
1 | 37774 | FILE-FLASH | Adobe Flash Player ActionScript constructor use after free attempt | off | drop | drop |
1 | 37775 | FILE-FLASH | Adobe Flash Player ActionScript constructor use after free attempt | off | drop | drop |
1 | 37776 | FILE-FLASH | Adobe Flash Player LoadVars use-after-free attempt | off | drop | drop |
1 | 37777 | FILE-FLASH | Adobe Flash Player LoadVars use-after-free attempt | off | drop | drop |
1 | 37778 | FILE-OTHER | Adobe Flash Player unsupported video encoding remote code execution attempt | off | drop | drop |
1 | 37779 | FILE-OTHER | Adobe Flash Player unsupported video encoding remote code execution attempt | off | drop | drop |
1 | 37780 | FILE-FLASH | Adobe Flash Player ASnative memory corruption attempt | off | drop | drop |
1 | 37781 | FILE-FLASH | Adobe Flash Player ASnative memory corruption attempt | off | drop | drop |
1 | 37782 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format heap overflow attempt | off | drop | drop |
1 | 37783 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format heap overflow attempt | off | drop | drop |
1 | 37789 | FILE-FLASH | Adobe Flash Player ASnative use after free attempt | off | drop | drop |
1 | 37790 | FILE-FLASH | Adobe Flash Player ASnative use after free attempt | off | drop | drop |
1 | 37791 | FILE-FLASH | Adobe Flash Player ASnative use after free attempt | off | drop | drop |
1 | 37792 | FILE-FLASH | Adobe Flash Player ASnative use after free attempt | off | drop | drop |
1 | 37795 | FILE-FLASH | Adobe Flash Player rectangle memory access violation attempt | off | drop | drop |
1 | 37796 | FILE-FLASH | Adobe Flash Player rectangle memory access violation attempt | off | drop | drop |
1 | 37797 | FILE-FLASH | Adobe Flash Player rectangle memory access violation attempt | off | drop | drop |
1 | 37798 | FILE-FLASH | Adobe Flash Player rectangle memory access violation attempt | off | drop | drop |
1 | 37839 | FILE-FLASH | Adobe Flash Player AAC audio memory corruption attempt | off | off | drop |
1 | 37840 | FILE-FLASH | Adobe Flash Player AAC audio memory corruption attempt | off | off | drop |
1 | 38061 | OS-WINDOWS | Microsoft Windows rpdesk remote code execution attempt | off | drop | drop |
1 | 38062 | OS-WINDOWS | Microsoft Windows rpdesk remote code execution attempt | off | drop | drop |
1 | 38063 | FILE-OTHER | Microsoft Windows atmfd.dll font driver malformed OTF file remote code execution attempt | off | drop | drop |
1 | 38064 | FILE-OTHER | Microsoft Windows atmfd.dll font driver malformed OTF file remote code execution attempt | off | drop | drop |
1 | 38065 | BROWSER-IE | Microsoft Internet Explorer GETDISPID invalid pointer access attempt | off | drop | drop |
1 | 38066 | BROWSER-IE | Microsoft Internet Explorer GETDISPID invalid pointer access attempt | off | drop | drop |
1 | 38071 | OS-WINDOWS | Microsoft Windows ValidateParentDepth out of bounds read attempt | off | drop | drop |
1 | 38072 | OS-WINDOWS | Microsoft Windows ValidateParentDepth out of bounds read attempt | off | drop | drop |
1 | 38073 | BROWSER-IE | Microsoft Edge CAsyncTpWorker Windows.Data.Pdf.dll object use after free attempt | off | drop | drop |
1 | 38074 | BROWSER-IE | Microsoft Edge CAsyncTpWorker Windows.Data.Pdf.dll object use after free attempt | off | drop | drop |
1 | 38075 | BROWSER-IE | Microsoft Edge CAsyncTpWorker Windows.Data.Pdf.dll object use after free attempt | off | drop | drop |
1 | 38076 | BROWSER-IE | Microsoft Edge CAsyncTpWorker Windows.Data.Pdf.dll object use after free attempt | off | drop | drop |
1 | 38079 | BROWSER-IE | Microsoft Internet Explorer embedded media player use after free attempt | off | drop | drop |
1 | 38080 | BROWSER-IE | Microsoft Internet Explorer embedded media player use after free attempt | off | drop | drop |
1 | 38081 | BROWSER-IE | Microsoft Internet Explorer SetItem use after free attempt | off | drop | drop |
1 | 38082 | BROWSER-IE | Microsoft Internet Explorer SetItem use after free attempt | off | drop | drop |
1 | 38083 | OS-WINDOWS | Microsoft Windows GreCreateDisplayDC surface object use after free attempt | off | drop | drop |
1 | 38084 | OS-WINDOWS | Microsoft Windows GreCreateDisplayDC surface object use after free attempt | off | drop | drop |
1 | 38088 | BROWSER-IE | Microsoft Internet Explorer string type confusion remote code execution attempt | off | drop | drop |
1 | 38089 | BROWSER-IE | Microsoft Internet Explorer string type confusion remote code execution attempt | off | drop | drop |
1 | 38092 | OS-WINDOWS | Microsoft Windows ObReferenceObjectByHandle function privilege escalation attempt | off | drop | drop |
1 | 38093 | OS-WINDOWS | Microsoft Windows ObReferenceObjectByHandle function privilege escalation attempt | off | drop | drop |
1 | 38094 | BROWSER-IE | Microsoft Internet Explorer CTreePos remote code execution attempt | off | drop | drop |
1 | 38095 | BROWSER-IE | Microsoft Internet Explorer CTreePos remote code execution attempt | off | drop | drop |
1 | 38096 | BROWSER-IE | Microsoft Internet Explorer out of bound write access attempt | off | drop | drop |
1 | 38097 | BROWSER-IE | Microsoft Internet Explorer out of bound write access attempt | off | drop | drop |
1 | 38100 | FILE-OFFICE | Microsoft Office Word wwlib.dll invalid pointer read attempt | off | drop | drop |
1 | 38101 | FILE-OFFICE | Microsoft Office Word wwlib.dll invalid pointer read attempt | off | drop | drop |
1 | 38106 | BROWSER-IE | Microsoft Edge LineBoxBuilder out-of-bound memory access attempt | off | off | drop |
1 | 38107 | BROWSER-IE | Microsoft Edge LineBoxBuilder out-of-bound memory access attempt | off | off | drop |
1 | 38108 | BROWSER-IE | Microsoft Internet Explorer CGeneratedTreeNode use-after-free | off | drop | drop |
1 | 38109 | BROWSER-IE | Microsoft Internet Explorer CGeneratedTreeNode use-after-free | off | drop | drop |
1 | 38112 | BROWSER-IE | Microsoft Internet Explorer addRow out-of-bounds read attempt | off | drop | drop |
1 | 38113 | BROWSER-IE | Microsoft Internet Explorer addRow out-of-bounds read attempt | off | drop | drop |
1 | 38114 | OS-WINDOWS | Microsoft Windows WebDAV mini redirector driver privilege escalation attempt | off | drop | drop |
1 | 38115 | OS-WINDOWS | Microsoft Windows WebDAV mini redirector driver privilege escalation attempt | off | drop | drop |
1 | 38117 | BROWSER-IE | Microsoft Internet Explorer mshtml InsertRange out of bounds write access | off | drop | drop |
1 | 38118 | BROWSER-IE | Microsoft Internet Explorer mshtml InsertRange out of bounds write access | off | drop | drop |
1 | 38119 | OS-WINDOWS | Microsoft Windows EPOINTQF privilege escalation attempt | off | off | drop |
1 | 38120 | OS-WINDOWS | Microsoft Windows EPOINTQF privilege escalation attempt | off | off | drop |
1 | 38122 | BROWSER-IE | Microsoft Internet Explorer CInput sliderdata object use after free attempt | off | off | drop |
1 | 38123 | BROWSER-IE | Microsoft Internet Explorer CInput sliderdata object use after free attempt | off | off | drop |
1 | 38126 | FILE-OFFICE | Microsoft Office Word ipdesign.dll ActiveX object access attempt | off | drop | drop |
1 | 38127 | FILE-OFFICE | Microsoft Office Word ipdesign.dll ActiveX object access attempt | off | drop | drop |
1 | 38128 | FILE-OFFICE | Microsoft Office Word ipdesign.dll ActiveX object access attempt | off | drop | drop |
1 | 38129 | FILE-OFFICE | Microsoft Office Word ipdesign.dll ActiveX object access attempt | off | drop | drop |
1 | 38140 | SERVER-WEBAPP | ATutor connections.php SQL injection attempt | off | off | drop |
1 | 38164 | SERVER-WEBAPP | Oracle Application Testing Suite UploadFileAction servlet directory traversal attempt | off | off | drop |
1 | 38165 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38166 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38167 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38168 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38169 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38170 | FILE-FLASH | Adobe Flash Player hitTest BitmapData object integer overflow attempt | off | drop | drop |
1 | 38171 | FILE-OTHER | Adobe Acrobat updaternotifications.dll dll-load exploit attempt | off | drop | drop |
1 | 38173 | FILE-FLASH | Adobe Standalone Flash Player texfield getter use after free attempt | off | drop | drop |
1 | 38174 | FILE-FLASH | Adobe Standalone Flash Player texfield getter use after free attempt | off | drop | drop |
1 | 38175 | FILE-FLASH | Adobe Standalone Flash Player texfield getter use after free attempt | off | drop | drop |
1 | 38176 | FILE-FLASH | Adobe Standalone Flash Player texfield getter use after free attempt | off | drop | drop |
1 | 38177 | FILE-FLASH | Adobe Standalone Flash Player ASnative object use after free attempt | off | drop | drop |
1 | 38178 | FILE-FLASH | Microsoft Standalone Flash Player asNative object use after free attempt | off | drop | drop |
1 | 38179 | FILE-FLASH | Adobe Standalone Flash Player ASnative object use after free attempt | off | drop | drop |
1 | 38180 | FILE-FLASH | Microsoft Standalone Flash Player asNative object use after free attempt | off | drop | drop |
1 | 38181 | FILE-FLASH | Adobe Flash Player AS3 multiple axis attributes integer overflow attempt | off | drop | drop |
1 | 38182 | FILE-FLASH | Adobe Flash Player AS3 multiple axis attributes integer overflow attempt | off | drop | drop |
1 | 38183 | FILE-FLASH | Adobe Flash Player AS3 multiple axis attributes integer overflow attempt | off | drop | drop |
1 | 38184 | FILE-FLASH | Adobe Flash Player AS3 multiple axis attributes integer overflow attempt | off | drop | drop |
1 | 38185 | FILE-FLASH | Adobe Flash Player AS2 setInterval use after free attempt | off | drop | drop |
1 | 38186 | FILE-FLASH | Adobe Flash Player AS2 setInterval use after free attempt | off | drop | drop |
1 | 38187 | FILE-FLASH | Adobe Flash Player AS2 setInterval use after free attempt | off | drop | drop |
1 | 38188 | FILE-FLASH | Adobe Flash Player AS2 setInterval use after free attempt | off | drop | drop |
1 | 38193 | FILE-FLASH | Adobe Flash Player setInterval use-after-free memory corruption attempt | off | drop | drop |
1 | 38194 | FILE-FLASH | Adobe Flash Player setInterval use-after-free memory corruption attempt | off | drop | drop |
1 | 38195 | FILE-FLASH | Adobe Flash Player htmlText method use-after-free memory corruption attempt | off | drop | drop |
1 | 38196 | FILE-FLASH | Adobe Flash Player htmlText method use-after-free memory corruption attempt | off | drop | drop |
1 | 38197 | FILE-FLASH | Adobe Flash Player recursion calls stack overflow attempt | off | drop | drop |
1 | 38198 | FILE-FLASH | Adobe Flash Player recursion calls stack overflow attempt | off | drop | drop |
1 | 38199 | FILE-FLASH | Adobe Flash Player BitmapData.copyChannel access violation attempt | off | drop | drop |
1 | 38200 | FILE-FLASH | Adobe Flash Player BitmapData.copyChannel access violation attempt | off | drop | drop |
1 | 38203 | FILE-FLASH | Adobe Flash Player BitmapData.applyFilter access violation attempt | off | drop | drop |
1 | 38204 | FILE-FLASH | Adobe Flash Player BitmapData.applyFilter access violation attempt | off | drop | drop |
1 | 38205 | FILE-FLASH | Adobe Flash Player MPD use-after-free attempt | off | drop | drop |
1 | 38206 | FILE-FLASH | Adobe Flash Player MPD use-after-free attempt | off | drop | drop |
1 | 38207 | FILE-FLASH | Adobe Flash Player MPD use-after-free attempt | off | drop | drop |
1 | 38208 | FILE-FLASH | Adobe Flash Player MPD use-after-free attempt | off | drop | drop |
1 | 38211 | FILE-PDF | Adobe Reader JPEG 2000 chrominance subsampling memory corruption attempt | off | drop | drop |
1 | 38212 | FILE-PDF | Adobe Reader JPEG 2000 chrominance subsampling memory corruption attempt | off | drop | drop |
1 | 38213 | FILE-FLASH | Adobe Flash Player BitmapData.paletteMap size mismatch integer overflow attempt | off | drop | drop |
1 | 38214 | FILE-FLASH | Adobe Flash Player BitmapData.paletteMap size mismatch integer overflow attempt | off | drop | drop |
1 | 38215 | FILE-FLASH | Adobe Flash Player BitmapData.paletteMap size mismatch integer overflow attempt | off | drop | drop |
1 | 38216 | FILE-FLASH | Adobe Flash Player BitmapData.paletteMap size mismatch integer overflow attempt | off | drop | drop |
1 | 38219 | FILE-FLASH | Adobe Flash Player use after free attempt | off | drop | drop |
1 | 38220 | FILE-FLASH | Adobe Flash Player use after free | off | drop | drop |
1 | 38221 | FILE-FLASH | Adobe Flash Player use after free attempt | off | drop | drop |
1 | 38222 | FILE-FLASH | Adobe Flash Player use after free attempt | off | drop | drop |
1 | 38223 | FILE-PDF | Adobe Acrobat Reader annotation oversized array memory corruption attempt | off | drop | drop |
1 | 38224 | FILE-PDF | Adobe Acrobat Reader annotation oversized array memory corruption attempt | off | drop | drop |
1 | 38227 | FILE-FLASH | Adobe Flash Player mp4 size memory corruption attempt | off | off | drop |
1 | 38238 | FILE-FLASH | Adobe Flash Player rectangle width integer overflow attempt | off | drop | drop |
1 | 38239 | FILE-FLASH | Adobe Flash Player rectangle width integer overflow attempt | off | drop | drop |
1 | 38240 | FILE-FLASH | Adobe Flash Player rectangle width integer overflow attempt | off | drop | drop |
1 | 38241 | FILE-FLASH | Adobe Flash Player rectangle width integer overflow attempt | off | drop | drop |
1 | 38308 | BROWSER-IE | Microsoft Internet Explorer VBScript engine use after free attempt | off | drop | drop |
1 | 38309 | BROWSER-IE | Microsoft Internet Explorer VBScript engine use after free attempt | off | drop | drop |
1 | 38392 | SERVER-WEBAPP | Apache Jetspeed Portal Site Manager directory traversal attempt | off | off | drop |
1 | 38393 | SERVER-WEBAPP | Apache Jetspeed Portal Site Manager directory traversal attempt | off | off | drop |
1 | 38401 | FILE-FLASH | Adobe Flash Player multiple scripts display rendering use-after-free attempt | off | drop | drop |
1 | 38402 | FILE-FLASH | Adobe Flash Player multiple scripts display rendering use-after-free attempt | off | drop | drop |
1 | 38403 | FILE-FLASH | Adobe Flash Player Transform Class Matrix AS2 use after free attempt | off | drop | drop |
1 | 38404 | FILE-FLASH | Adobe Flash Player Transform Class Matrix AS2 use after free attempt | off | drop | drop |
1 | 38405 | FILE-FLASH | Adobe Flash Player Transform Class Matrix AS2 use after free attempt | off | drop | drop |
1 | 38406 | FILE-FLASH | Adobe Flash Player Transform Class Matrix AS2 use after free attempt | off | drop | drop |
1 | 38407 | FILE-FLASH | Adobe Flash Player JPEG-XR decode buffer overflow attempt | off | drop | drop |
1 | 38408 | FILE-FLASH | Adobe Flash Player JPEG-XR decode buffer overflow attempt | off | drop | drop |
1 | 38409 | FILE-FLASH | Adobe Flash Player JPEG-XR decode buffer overflow attempt | off | drop | drop |
1 | 38410 | FILE-FLASH | Adobe Flash Player JPEG-XR decode buffer overflow attempt | off | drop | drop |
1 | 38411 | FILE-FLASH | Adobe Flash Player duplicateMovieClip use after free attempt | off | drop | drop |
1 | 38412 | FILE-FLASH | Adobe Flash Player duplicateMovieClip use after free attempt | off | drop | drop |
1 | 38413 | FILE-FLASH | Adobe Flash Player NetConnection to ColorMatrixFilter object type confusion attempt | off | drop | drop |
1 | 38414 | FILE-FLASH | Adobe Flash Player NetConnection to ColorMatrixFilter object type confusion attempt | off | drop | drop |
1 | 38415 | FILE-FLASH | Adobe Flash Player NetConnection to ColorMatrixFilter object type confusion attempt | off | drop | drop |
1 | 38416 | FILE-FLASH | Adobe Flash Player NetConnection to ColorMatrixFilter object type confusion attempt | off | drop | drop |
1 | 38417 | FILE-FLASH | Adobe Flash Player ClbCatQ.dll dll-load exploit attempt | off | off | drop |
1 | 38418 | FILE-FLASH | Adobe Flash Player HNetCfg.dll dll-load exploit attempt | off | off | drop |
1 | 38419 | FILE-FLASH | Adobe Flash Player RASMan.dll dll-load exploit attempt | off | off | drop |
1 | 38420 | FILE-FLASH | Adobe Flash Player setupapi.dll dll-load exploit attempt | off | off | drop |
1 | 38421 | FILE-FLASH | Adobe Flash Player ClbCatQ.dll dll-load exploit attempt | off | off | drop |
1 | 38422 | FILE-FLASH | Adobe Flash Player HNetCfg.dll dll-load exploit attempt | off | off | drop |
1 | 38423 | FILE-FLASH | Adobe Flash Player RASMan.dll dll-load exploit attempt | off | off | drop |
1 | 38424 | FILE-FLASH | Adobe Flash Player setupapi.dll dll-load exploit attempt | off | off | drop |
1 | 38425 | FILE-FLASH | Adobe Flash Player ExportAssets count memory corruption attempt | off | drop | drop |
1 | 38426 | FILE-FLASH | Adobe Flash Player ExportAssets count memory corruption attempt | off | drop | drop |
1 | 38427 | FILE-FLASH | Adobe Flash Player ExportAssets count memory corruption attempt | off | drop | drop |
1 | 38428 | FILE-FLASH | Adobe Flash Player ExportAssets count memory corruption attempt | off | drop | drop |
1 | 38429 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38430 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38431 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38432 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38433 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38434 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38455 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38456 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 38459 | OS-WINDOWS | Microsoft Windows DrawMenuBarTemp memory corruption attempt | off | drop | drop |
1 | 38460 | OS-WINDOWS | Microsoft Windows DrawMenuBarTemp memory corruption attempt | off | drop | drop |
1 | 38463 | BROWSER-PLUGINS | Microsoft XML Core Services ActiveX control use after free attempt | off | drop | drop |
1 | 38464 | BROWSER-PLUGINS | Microsoft XML Core Services ActiveX control use after free attempt | off | drop | drop |
1 | 38465 | BROWSER-IE | Microsoft Internet Explorer InsertSanitizedTextEx use after free attempt | off | drop | drop |
1 | 38466 | BROWSER-IE | Microsoft Internet Explorer InsertSanitizedTextEx use after free attempt | off | drop | drop |
1 | 38467 | BROWSER-IE | Microsoft Internet Explorer 9 frameset use after free attempt | off | drop | drop |
1 | 38468 | BROWSER-IE | Microsoft Internet Explorer 9 frameset use after free attempt | off | drop | drop |
1 | 38469 | OS-WINDOWS | Microsoft Windows api-ms-win-appmodel-runtime dll-load exploit attempt | off | drop | drop |
1 | 38470 | OS-WINDOWS | Microsoft Windows api-ms-win-appmodel-runtime dll-load exploit attempt | off | drop | drop |
1 | 38471 | FILE-OFFICE | Microsoft Office Excel sheet object use after free attempt | off | drop | drop |
1 | 38472 | FILE-OFFICE | Microsoft Office Excel sheet object use after free attempt | off | drop | drop |
1 | 38473 | BROWSER-IE | Microsoft Edge iframe cross-site scripting attempt | off | drop | drop |
1 | 38474 | BROWSER-IE | Microsoft Edge iframe cross-site scripting attempt | off | drop | drop |
1 | 38475 | OS-WINDOWS | Microsoft Windows anonymous user token impersonation attempt | off | drop | drop |
1 | 38476 | OS-WINDOWS | Microsoft Windows anonymous user token impersonation attempt | off | drop | drop |
1 | 38479 | BROWSER-IE | Microsoft Edge remove range out of bounds read attempt | off | drop | drop |
1 | 38480 | BROWSER-IE | Microsoft Edge remove range out of bounds read attempt | off | drop | drop |
1 | 38481 | FILE-OFFICE | Microsoft Office Excel msxml6 ParseElementN use after free attempt | off | drop | drop |
1 | 38482 | FILE-OFFICE | Microsoft Office Excel msxml6 ParseElementN use after free attempt | off | drop | drop |
1 | 38483 | BROWSER-IE | Microsoft Edge CStyleSheet keyframes out of bounds read attempt | off | drop | drop |
1 | 38484 | BROWSER-IE | Microsoft Edge CStyleSheet keyframes out of bounds read attempt | off | drop | drop |
1 | 38485 | BROWSER-IE | Microsoft Edge TextDataSlice type confusion attempt | off | drop | drop |
1 | 38486 | BROWSER-IE | Microsoft Edge TextDataSlice type confusion attempt | off | drop | drop |
1 | 38487 | OS-WINDOWS | Microsoft Windows win32k.sys PathToRegion buffer overflow attempt | off | drop | drop |
1 | 38488 | OS-WINDOWS | Microsoft Windows win32k.sys PathToRegion buffer overflow attempt | off | drop | drop |
1 | 38491 | OS-WINDOWS | Microsoft Windows CreatePopupMenu win32k.sys use after free attempt | off | drop | drop |
1 | 38492 | OS-WINDOWS | Microsoft Windows CreatePopupMenu win32k.sys use after free attempt | off | drop | drop |
1 | 38493 | FILE-OTHER | Microsoft Windows win32k.sys glyph bitmap boundary out of bounds memory access attempt | off | drop | drop |
1 | 38494 | FILE-OTHER | Microsoft Windows win32k.sys glyph bitmap boundary out of bounds memory access attempt | off | drop | drop |
1 | 38495 | FILE-OFFICE | Microsoft Office Word out of bound read exception attempt | off | off | drop |
1 | 38496 | FILE-OFFICE | Microsoft Office Word out of bound read exception attempt | off | off | drop |
1 | 38503 | BROWSER-IE | Microsoft Internet Explorer CChildIterator media object use-after-free attempt | off | drop | drop |
1 | 38504 | BROWSER-IE | Microsoft Internet Explorer CChildIterator media object use-after-free attempt | off | drop | drop |
1 | 38505 | BROWSER-IE | Microsoft Internet Explorer CChildIterator media object use-after-free attempt | off | drop | drop |
1 | 38506 | BROWSER-IE | Microsoft Internet Explorer CChildIterator media object use-after-free attempt | off | drop | drop |
1 | 38518 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | off | drop |
1 | 38519 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | off | drop |
1 | 38520 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | off | drop |
1 | 38627 | FILE-OTHER | libarchive zip_read_mac_metadata heap buffer overflow attempt | off | off | drop |
1 | 38628 | FILE-OTHER | libarchive zip_read_mac_metadata heap buffer overflow attempt | off | off | drop |
1 | 38759 | OS-WINDOWS | Microsoft Windows Win32k window handle use after free attempt | off | drop | drop |
1 | 38760 | OS-WINDOWS | Microsoft Windows Win32k window handle use after free attempt | off | drop | drop |
1 | 38761 | OS-WINDOWS | Microsoft Windows win32kfull.sys font object use after free attempt | off | drop | drop |
1 | 38762 | OS-WINDOWS | Microsoft Windows win32kfull.sys font object use after free attempt | off | drop | drop |
1 | 38763 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll null pointer dereference attempt | off | drop | drop |
1 | 38764 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll null pointer dereference attempt | off | drop | drop |
1 | 38765 | OS-WINDOWS | Microsoft Windows Dxgkrnl.sys RtlMemoryCopy buffer overflow attempt | off | off | drop |
1 | 38766 | OS-WINDOWS | Microsoft Windows Dxgkrnl.sys RtlMemoryCopy buffer overflow attempt | off | off | drop |
1 | 38768 | BROWSER-IE | Microsoft Internet Explorer CreateColorSpace vulnerability attempt | off | off | alert |
1 | 38769 | BROWSER-IE | Microsoft Internet Explorer CreateColorSpace vulnerability attempt | off | off | drop |
1 | 38770 | BROWSER-IE | Microsoft Internet Explorer CreateColorSpace vulnerability attempt | off | off | drop |
1 | 38771 | BROWSER-IE | Microsoft Internet Explorer CreateColorSpace vulnerability attempt | off | off | drop |
1 | 38772 | BROWSER-IE | Microsoft Internet Explorer EMF file integer overflow attempt | off | drop | drop |
1 | 38773 | BROWSER-IE | Microsoft Internet Explorer EMF file integer overflow attempt | off | drop | drop |
1 | 38774 | OS-WINDOWS | Microsoft Windows device content surface bitmap use after free attempt | off | drop | drop |
1 | 38775 | OS-WINDOWS | Microsoft Windows device content surface bitmap use after free attempt | off | drop | drop |
1 | 38780 | OS-WINDOWS | Microsoft Internet Explorer VerifyFile information disclosure attempt | off | drop | drop |
1 | 38781 | OS-WINDOWS | Microsoft Internet Explorer VerifyFile information disclosure attempt | off | drop | drop |
1 | 38787 | OS-WINDOWS | Microsoft Windows Device Context bitmap use after free attempt | off | drop | drop |
1 | 38788 | OS-WINDOWS | Microsoft Windows Device Context bitmap use after free attempt | off | drop | drop |
1 | 38792 | FILE-FLASH | Adobe Flash Player ASSetNativeAccessor use after free attempt | off | drop | drop |
1 | 38793 | FILE-FLASH | Adobe Flash Player ASSetNativeAccessor use after free attempt | off | drop | drop |
1 | 38794 | FILE-PDF | Adobe Reader XFA javascript use after free attempt | off | drop | drop |
1 | 38795 | FILE-PDF | Adobe Reader XFA javascript use after free attempt | off | drop | drop |
1 | 38797 | BROWSER-IE | Microsoft Edge graphics subcomponent use after free attempt | off | drop | drop |
1 | 38798 | BROWSER-IE | Microsoft Edge graphics subcomponent use after free attempt | off | drop | drop |
1 | 38799 | FILE-PDF | Adobe Acrobat FileAttachment use-after-free attempt | off | drop | drop |
1 | 38800 | FILE-PDF | Adobe Acrobat FileAttachment use-after-free attempt | off | drop | drop |
1 | 38801 | OS-WINDOWS | Microsoft Windows NtGdiGetEmbUFI kernel information disclosure attempt | off | drop | drop |
1 | 38802 | OS-WINDOWS | Microsoft Windows NtGdiGetEmbUFI kernel information disclosure attempt | off | drop | drop |
1 | 38803 | OS-WINDOWS | Microsoft Windows kernel Configuration Manager failure attempt | off | off | drop |
1 | 38804 | OS-WINDOWS | Microsoft Windows kernel Configuration Manager failure attempt | off | off | drop |
1 | 38808 | OS-WINDOWS | Microsoft Windows win32kfull.sys device context use after free attempt | off | drop | drop |
1 | 38809 | OS-WINDOWS | Microsoft Windows win32kfull.sys device context use after free attempt | off | drop | drop |
1 | 38816 | FILE-OTHER | Microsoft Windows gdi32 malformed EMF file ExtEscape buffer overflow attempt | off | off | drop |
1 | 38817 | FILE-OTHER | Microsoft Windows gdi32 malformed EMF file ExtEscape buffer overflow attempt | off | off | drop |
1 | 38818 | FILE-PDF | Adobe Acrobat Reader XFA engine memory leak - possible code instrumentation detected | off | drop | drop |
1 | 38819 | FILE-PDF | Adobe Acrobat Reader XFA engine memory leak ASLR bypass attempt | off | drop | drop |
1 | 38820 | FILE-PDF | Adobe Acrobat Reader XFA engine memory leak - possible code instrumentation detected | off | drop | drop |
1 | 38821 | FILE-PDF | Adobe Acrobat Reader XFA engine memory leak ASLR bypass attempt | off | drop | drop |
1 | 38824 | FILE-FLASH | Adobe Flash Player removeMovieClip callback use after free attempt | off | drop | drop |
1 | 38825 | FILE-FLASH | Adobe Flash Player removeMovieClip callback use after free attempt | off | drop | drop |
1 | 38826 | FILE-FLASH | Adobe Flash Player removeMovieClip callback use after free attempt | off | drop | drop |
1 | 38827 | FILE-FLASH | Adobe Flash Player removeMovieClip callback use after free attempt | off | drop | drop |
1 | 38828 | BROWSER-IE | Microsoft Internet Explorer BooleanProtoObj objects JSONStringifyArray use-after-free attempt | off | drop | drop |
1 | 38829 | BROWSER-IE | Microsoft Internet Explorer BooleanProtoObj objects JSONStringifyArray use-after-free attempt | off | drop | drop |
1 | 38830 | FILE-FLASH | Adobe Flash Player ContentFactory memory corruption attempt | off | drop | drop |
1 | 38831 | FILE-FLASH | Adobe Flash Player ContentFactory memory corruption attempt | off | drop | drop |
1 | 38832 | FILE-FLASH | Adobe Flash Player ContentFactory memory corruption attempt | off | drop | drop |
1 | 38833 | FILE-FLASH | Adobe Flash Player ContentFactory memory corruption attempt | off | drop | drop |
1 | 38837 | FILE-FLASH | Adobe Flash Player faulty x64 support out of bounds read attempt | off | drop | drop |
1 | 38838 | FILE-FLASH | Adobe Flash Player faulty x64 support out of bounds read attempt | off | drop | drop |
1 | 38843 | FILE-PDF | Adobe Reader javascript replace integer overflow attempt | off | off | drop |
1 | 38844 | FILE-PDF | Adobe Reader javascript replace integer overflow attempt | off | off | drop |
1 | 38845 | FILE-PDF | Adobe Reader out of bounds memory access violation attempt | off | off | drop |
1 | 38846 | FILE-PDF | Adobe Reader out of bounds memory access violation attempt | off | off | drop |
1 | 38847 | FILE-FLASH | Adobe Flash Player loadSound method use-after-free memory corruption attempt | off | drop | drop |
1 | 38848 | FILE-FLASH | Adobe Flash Player loadSound method use-after-free memory corruption attempt | off | drop | drop |
1 | 38860 | FILE-OTHER | Oracle OIT ContentAccess libvs_mwkd out of bounds write attempt | off | drop | drop |
1 | 38861 | FILE-OTHER | Oracle OIT ContentAccess libvs_mwkd out of bounds write attempt | off | drop | drop |
1 | 38868 | FILE-OTHER | Hancom Hangul Office HShow integer-based heap buffer overflow attempt | off | drop | drop |
1 | 38869 | FILE-OTHER | Hancom Hangul Office HShow integer-based heap buffer overflow attempt | off | drop | drop |
1 | 38872 | FILE-FLASH | Adobe Flash Player MSIMG32.dll dll-load exploit attempt | off | drop | drop |
1 | 38873 | FILE-FLASH | Adobe Flash Player MSIMG32.dll dll-load exploit attempt | off | drop | drop |
1 | 38874 | FILE-FLASH | Adobe Flash Player DeleteRangeTimelineOperation type confusion attempt | off | drop | drop |
1 | 38875 | FILE-FLASH | Adobe Flash Player DeleteRangeTimelineOperation type confusion attempt | off | drop | drop |
1 | 38877 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38878 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38879 | SERVER-WEBAPP | HP Enterprise Vertica validateAdminConfig command injection attempt | drop | drop | drop |
1 | 38880 | SERVER-WEBAPP | HP Enterprise Vertica validateAdminConfig command injection attempt | drop | drop | drop |
1 | 38895 | FILE-PDF | Adobe Reader XFA prePrint use after free attempt | off | drop | drop |
1 | 38896 | FILE-PDF | Adobe Reader XFA prePrint use after free attempt | off | drop | drop |
1 | 38899 | FILE-PDF | Adobe Reader PDF defineGetter execMenuItem use after free attempt | off | drop | drop |
1 | 38900 | FILE-PDF | Adobe Reader PDF onEvent execMenuItem use after free attempt | off | drop | drop |
1 | 38901 | FILE-PDF | Adobe Reader PDF setAction execMenuItem use after free attempt | off | drop | drop |
1 | 38902 | FILE-PDF | Adobe Reader PDF setPageAction execMenuItem use after free attempt | off | drop | drop |
1 | 38903 | FILE-PDF | Adobe Reader PDF defineGetter execMenuItem use after free attempt | off | drop | drop |
1 | 38904 | FILE-PDF | Adobe Reader PDF onEvent execMenuItem use after free attempt | off | drop | drop |
1 | 38905 | FILE-PDF | Adobe Reader PDF setAction execMenuItem use after free attempt | off | drop | drop |
1 | 38906 | FILE-PDF | Adobe Reader PDF setPageAction execMenuItem use after free attempt | off | drop | drop |
1 | 38907 | FILE-PDF | Adobe Reader PDF execMenuItem use after free attempt | off | drop | drop |
1 | 38908 | FILE-PDF | Adobe Reader PDF execMenuItem use after free attempt | off | drop | drop |
1 | 38909 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38910 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38911 | FILE-PDF | Adobe Reader DisablePermEnforcement JavaScript function use-after-free attempt | off | drop | drop |
1 | 38912 | FILE-PDF | Adobe Reader DisablePermEnforcement JavaScript function use-after-free attempt | off | drop | drop |
1 | 38914 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38915 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38918 | FILE-PDF | Adobe Reader createAVView JavaScript use-after-free attempt | off | drop | drop |
1 | 38919 | FILE-PDF | Adobe Reader createAVView JavaScript use-after-free attempt | off | drop | drop |
1 | 38920 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38921 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38923 | FILE-PDF | Adobe Reader compareDocuments JavaScript function use-after-free attempt | off | drop | drop |
1 | 38924 | FILE-PDF | Adobe Reader compareDocuments JavaScript function use-after-free attempt | off | drop | drop |
1 | 38931 | FILE-PDF | Adobe Reader submitForm read out of bounds attempt | off | drop | drop |
1 | 38932 | FILE-PDF | Adobe Reader submitForm read out of bounds attempt | off | drop | drop |
1 | 38935 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38936 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38937 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38938 | FILE-PDF | Adobe Reader trusted JavaScript function security bypass attempt | off | drop | drop |
1 | 38939 | SERVER-WEBAPP | ORACLE-SERVER Oracle Application Testing Suite filename directory traversal attempt | off | off | drop |
1 | 38940 | SERVER-WEBAPP | Oracle Application Testing Suite DownloadServlet servlet directory traversal attempt | off | off | drop |
1 | 38941 | SERVER-WEBAPP | Oracle Application Testing Suite DownloadServlet servlet directory traversal attempt | off | off | drop |
1 | 38942 | SERVER-WEBAPP | Oracle Application Testing Suite DownloadServlet servlet directory traversal attempt | off | off | drop |
1 | 38943 | FILE-PDF | Adobe Reader XFA javascript out of bound memory corruption attempt | off | drop | drop |
1 | 38944 | FILE-PDF | Adobe Reader XFA javascript out of bound memory corruption attempt | off | drop | drop |
1 | 38954 | FILE-OTHER | Adobe Acrobat DC invalid TIFF tagtype out of bounds read attempt | off | drop | drop |
1 | 38955 | FILE-OTHER | Adobe Acrobat DC invalid TIFF tagtype out of bounds read attempt | off | drop | drop |
1 | 38956 | FILE-OTHER | Adobe Acrobat DC invalid TIFF tagtype out of bounds read attempt | off | drop | drop |
1 | 38957 | FILE-OTHER | Adobe Acrobat DC invalid TIFF tagtype out of bounds read attempt | off | drop | drop |
1 | 38959 | FILE-PDF | Adobe Reader malformed Universal 3D stream memory corruption attempt | off | drop | drop |
1 | 38960 | FILE-PDF | Adobe Reader malformed Universal 3D stream memory corruption attempt | off | drop | drop |
1 | 38966 | FILE-PDF | Adobe Reader malformed JPEG2000 image invalid NumberComponents out of bounds read attempt | off | drop | drop |
1 | 38967 | FILE-PDF | Adobe Reader malformed JPEG2000 image invalid NumberComponents out of bounds read attempt | off | drop | drop |
1 | 38968 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | drop | drop |
1 | 38969 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | drop | drop |
1 | 38970 | SERVER-WEBAPP | Oracle Application Testing Suite directory traversal attempt | off | drop | drop |
1 | 38971 | FILE-FLASH | Adobe Flash Player OpportunityGenerator.update memory corruption attempt | off | drop | drop |
1 | 38972 | FILE-FLASH | Adobe Flash Player OpportunityGenerator.update memory corruption attempt | off | drop | drop |
1 | 38973 | FILE-FLASH | Adobe Flash Player OpportunityGenerator.update memory corruption attempt | off | drop | drop |
1 | 38974 | FILE-FLASH | Adobe Flash Player OpportunityGenerator.update memory corruption attempt | off | drop | drop |
1 | 38977 | FILE-PDF | Adobe Acrobat memory corruption vulnerability attempt | off | off | drop |
1 | 38978 | FILE-PDF | Adobe Acrobat memory corruption vulnerability attempt | off | off | drop |
1 | 38980 | FILE-PDF | Adobe Acrobat Reader malformed FlateDecode stream use after free attempt | off | drop | drop |
1 | 38981 | FILE-PDF | Adobe Acrobat Reader malformed FlateDecode stream use after free attempt | off | drop | drop |
1 | 38982 | FILE-FLASH | Adobe Flash Player corrupt PNG image load out of bounds memory access attempt | off | drop | drop |
1 | 38983 | FILE-FLASH | Adobe Flash Player corrupt PNG image load out of bounds memory access attempt | off | drop | drop |
1 | 38986 | SERVER-WEBAPP | SAP NetWeaver xMII directory traversal attempt | off | off | drop |
1 | 38987 | SERVER-WEBAPP | SAP NetWeaver xMII directory traversal attempt | off | off | drop |
1 | 38988 | SERVER-WEBAPP | SAP NetWeaver xMII directory traversal attempt | off | off | drop |
1 | 38991 | FILE-PDF | Adobe Reader execAVDialog JavaScript function use-after-free attempt | off | drop | drop |
1 | 38992 | FILE-PDF | Adobe Reader execAVDialog JavaScript function use-after-free attempt | off | drop | drop |
1 | 38993 | SQL | use of sleep function in HTTP header - likely SQL injection attempt | off | drop | drop |
1 | 38996 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | drop | drop |
1 | 38997 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | drop | drop |
1 | 38998 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | drop | drop |
1 | 38999 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | drop | drop |
1 | 39007 | FILE-PDF | Adobe Reader XFA form use-after-free attempt | off | drop | drop |
1 | 39008 | FILE-PDF | Adobe Reader XFA form use-after-free attempt | off | drop | drop |
1 | 39009 | FILE-FLASH | Adobe Flash Player setMetadata memory corruption attempt | off | drop | drop |
1 | 39010 | FILE-FLASH | Adobe Flash Player setMetadata memory corruption attempt | off | drop | drop |
1 | 39011 | FILE-FLASH | Adobe Flash Player setMetadata memory corruption attempt | off | drop | drop |
1 | 39012 | FILE-FLASH | Adobe Flash Player setMetadata memory corruption attempt | off | drop | drop |
1 | 39013 | FILE-PDF | Adobe Reader CTJPEGDecoderReadNextTile out of bounds read attempt | off | drop | drop |
1 | 39014 | FILE-PDF | Adobe Reader CTJPEGDecoderReadNextTile out of bounds read attempt | off | drop | drop |
1 | 39015 | FILE-PDF | Adobe Reader AcroForm dictionary object use after free attempt | off | drop | drop |
1 | 39016 | FILE-PDF | Adobe Reader AcroForm dictionary object use after free attempt | off | drop | drop |
1 | 39017 | FILE-PDF | Adobe Reader XFA FormInstanceManager use after free attempt | off | drop | drop |
1 | 39018 | FILE-PDF | Adobe Reader XFA FormInstanceManager use after free attempt | off | drop | drop |
1 | 39019 | FILE-FLASH | Adobe Flash Player PSDK use-after-free attempt | off | drop | drop |
1 | 39020 | FILE-FLASH | Adobe Flash Player PSDK use-after-free attempt | off | drop | drop |
1 | 39021 | FILE-FLASH | Adobe Flash Player PSDK use-after-free attempt | off | drop | drop |
1 | 39022 | FILE-FLASH | Adobe Flash Player PSDK use-after-free attempt | off | drop | drop |
1 | 39023 | FILE-FLASH | Adobe Flash Player selection.setFocus use after free attempt | off | drop | drop |
1 | 39024 | FILE-FLASH | Adobe Flash Player selection.setFocus use after free attempt | off | drop | drop |
1 | 39025 | FILE-FLASH | Adobe Flash Player selection.setFocus use after free attempt | off | drop | drop |
1 | 39026 | FILE-FLASH | Adobe Flash Player selection.setFocus use after free attempt | off | drop | drop |
1 | 39028 | FILE-PDF | Adobe Reader JPEG 2000 memory corruption attempt | off | drop | drop |
1 | 39029 | FILE-PDF | Adobe Reader JPEG 2000 memory corruption attempt | off | drop | drop |
1 | 39030 | FILE-FLASH | Adobe Flash Player ASSetNative use-after-free attempt | off | drop | drop |
1 | 39031 | FILE-FLASH | Adobe Flash Player ASSetNative use-after-free attempt | off | drop | drop |
1 | 39032 | FILE-FLASH | Adobe Flash Player ASSetNative use-after-free attempt | off | drop | drop |
1 | 39033 | FILE-FLASH | Adobe Flash Player ASSetNative use-after-free attempt | off | drop | drop |
1 | 39061 | FILE-PDF | Adobe Reader XFA API preOpen use after free attempt | off | drop | drop |
1 | 39062 | FILE-PDF | Adobe Reader XFA API preOpen use after free attempt | off | drop | drop |
1 | 39076 | FILE-PDF | Adobe Reader XFA API preOpen use after free attempt | off | drop | drop |
1 | 39077 | FILE-PDF | Adobe Reader XFA API preOpen use after free attempt | off | drop | drop |
1 | 39087 | SERVER-WEBAPP | Oracle Application Testing Suite arbitrary file read attempt | off | off | drop |
1 | 39088 | SERVER-WEBAPP | Oracle Application Testing Suite arbitrary file read attempt | off | off | drop |
1 | 39089 | SERVER-WEBAPP | Oracle Application Testing Suite arbitrary file read attempt | off | off | drop |
1 | 39090 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39091 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39092 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39093 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39094 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39095 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39096 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39097 | FILE-IMAGE | ImageMagick and GraphicsMagick OpenBlob command injection attempt | off | drop | drop |
1 | 39098 | FILE-PDF | Adobe Reader double memory free call remote code execution attempt | off | drop | drop |
1 | 39099 | FILE-PDF | Adobe Reader double memory free call remote code execution attempt | off | drop | drop |
1 | 39100 | FILE-PDF | Adobe Reader Universal 3D engine out of bounds memory access violation attempt | off | off | drop |
1 | 39101 | FILE-PDF | Adobe Reader Universal 3D engine out of bounds memory access violation attempt | off | off | drop |
1 | 39102 | FILE-PDF | Adobe Reader PDF embedded JPEG memory corruption attempt | off | drop | drop |
1 | 39103 | FILE-PDF | Adobe Reader PDF embedded JPEG memory corruption attempt | off | drop | drop |
1 | 39104 | FILE-PDF | Adobe Reader Universal 3D engine out of bounds memory access violation attempt | off | off | drop |
1 | 39105 | FILE-PDF | Adobe Reader Universal 3D engine out of bounds memory access violation attempt | off | off | drop |
1 | 39112 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39113 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39114 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39115 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39131 | FILE-PDF | Adobe Acrobat Reader Acroform engine memory corruption attempt | off | drop | drop |
1 | 39132 | FILE-PDF | Adobe Acrobat Reader Acroform engine memory corruption attempt | off | drop | drop |
1 | 39136 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39137 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39138 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39139 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39140 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39141 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39142 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39143 | FILE-IMAGE | Adobe Pro DC Exif ModifyDate metadata memory corruption attempt | off | off | drop |
1 | 39144 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39145 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39146 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39147 | FILE-IMAGE | Adobe Pro DC Exif Software metadata memory corruption attempt | off | off | drop |
1 | 39153 | FILE-PDF | Adobe Acrobat Reader XObject image object use after free attempt | off | drop | drop |
1 | 39154 | FILE-PDF | Adobe Acrobat Reader XObject image object use after free attempt | off | drop | drop |
1 | 39161 | FILE-PDF | Google Chrome PDFium jpeg2000 SIZ segment check failure heap buffer overflow attempt | off | drop | drop |
1 | 39162 | FILE-PDF | Google Chrome PDFium jpeg2000 SIZ segment check failure heap buffer overflow attempt | off | drop | drop |
1 | 39165 | SERVER-WEBAPP | iperf3 heap overflow remote code execution attempt | off | off | drop |
1 | 39190 | SERVER-APACHE | Apache Struts remote code execution attempt | off | drop | drop |
1 | 39193 | OS-WINDOWS | Microsoft Windows Win32k.sys MakeWindowForegroundWithState null pointer dereference attempt | off | drop | drop |
1 | 39194 | OS-WINDOWS | Microsoft Windows Win32k.sys MakeWindowForegroundWithState null pointer dereference attempt | off | drop | drop |
1 | 39195 | OS-WINDOWS | Microsoft Windows Win32k.sys MakeWindowForegroundWithState null pointer dereference attempt | off | drop | drop |
1 | 39196 | OS-WINDOWS | Microsoft Windows Win32k.sys MakeWindowForegroundWithState null pointer dereference attempt | off | drop | drop |
1 | 39199 | BROWSER-IE | Microsoft Edge class object confusion attempt | off | drop | drop |
1 | 39200 | BROWSER-IE | Microsoft Edge class object confusion attempt | off | drop | drop |
1 | 39201 | BROWSER-IE | Microsoft Internet Explorer vbscript csession close use after free attempt | off | drop | drop |
1 | 39202 | BROWSER-IE | Microsoft Internet Explorer vbscript csession close use after free attempt | off | drop | drop |
1 | 39203 | FILE-OFFICE | Microsoft Office Word wwlib.dll out of bounds read attempt | off | off | drop |
1 | 39204 | FILE-OFFICE | Microsoft Office Word wwlib.dll out of bounds read attempt | off | off | drop |
1 | 39205 | BROWSER-IE | Microsoft Edge PDF reader out of bounds memory access attempt | off | drop | drop |
1 | 39206 | BROWSER-IE | Microsoft Edge PDF reader out of bounds memory access attempt | off | drop | drop |
1 | 39207 | BROWSER-IE | Microsoft Internet Explorer drag and drop API remote code execution attempt | off | drop | drop |
1 | 39208 | BROWSER-IE | Microsoft Internet Explorer drag and drop API remote code execution attempt | off | drop | drop |
1 | 39209 | OS-WINDOWS | Microsoft Windows sandbox ProcessFontDisablePolicy check bypass attempt | off | drop | drop |
1 | 39210 | OS-WINDOWS | Microsoft Windows sandbox ProcessFontDisablePolicy check bypass attempt | off | drop | drop |
1 | 39211 | BROWSER-IE | Microsoft Internet Explorer VBScript out of bounds memory access remote code execution attempt | off | drop | drop |
1 | 39212 | BROWSER-IE | Microsoft Internet Explorer VBScript out of bounds memory access remote code execution attempt | off | drop | drop |
1 | 39213 | OS-WINDOWS | Microsoft Windows WebDAV NTLM reflection attack attempt | off | drop | drop |
1 | 39214 | OS-WINDOWS | Microsoft Windows WebDAV NTLM reflection attack attempt | off | drop | drop |
1 | 39215 | OS-WINDOWS | Microsoft Windows WebDAV NTLM reflection attack attempt | off | drop | drop |
1 | 39216 | OS-WINDOWS | Microsoft Windows WebDAV NTLM reflection attack attempt | off | drop | drop |
1 | 39217 | OS-WINDOWS | Microsoft Windows win32kfull.sys NtGdiExtFloodFill use after free attempt | off | drop | drop |
1 | 39218 | OS-WINDOWS | Microsoft Windows win32kfull.sys NtGdiExtFloodFill use after free attempt | off | drop | drop |
1 | 39221 | FILE-OFFICE | Microsoft Office Word mso.dll subcomponent use after free attempt | off | drop | drop |
1 | 39222 | FILE-OFFICE | Microsoft Office Word mso.dll subcomponent use after free attempt | off | drop | drop |
1 | 39223 | FILE-OFFICE | Microsoft Office Excel malformed XLS out of bounds memory read attempt | off | drop | drop |
1 | 39224 | FILE-OFFICE | Microsoft Office Excel malformed XLS out of bounds memory read attempt | off | drop | drop |
1 | 39225 | OS-WINDOWS | Microsoft Windows Diagnostics Hub directory traversal attempt | off | off | drop |
1 | 39226 | OS-WINDOWS | Microsoft Windows Diagnostics Hub directory traversal attempt | off | off | drop |
1 | 39227 | OS-WINDOWS | Microsoft Windows WPAD spoofing attempt | off | drop | drop |
1 | 39230 | BROWSER-IE | Microsoft Internet Explorer CSS link element use-after-free attempt | off | drop | drop |
1 | 39231 | BROWSER-IE | Microsoft Internet Explorer CSS link element use-after-free attempt | off | drop | drop |
1 | 39232 | BROWSER-IE | Microsoft Edge Content Security Policy bypass attempt | off | drop | drop |
1 | 39236 | BROWSER-IE | Microsoft Internet Explorer scripting engine buffer overflow attempt | off | drop | drop |
1 | 39237 | BROWSER-IE | Microsoft Internet Explorer scripting engine buffer overflow attempt | off | drop | drop |
1 | 39238 | BROWSER-IE | Microsoft Edge malformed PDF JPEG2000 object out of bounds memory access attempt | off | drop | drop |
1 | 39239 | BROWSER-IE | Microsoft Edge malformed PDF JPEG2000 object out of bounds memory access attempt | off | drop | drop |
1 | 39260 | FILE-OTHER | Microsoft Windows ATMFD font driver malformed OTF file out-of-bounds memory access attempt | off | drop | drop |
1 | 39261 | FILE-OTHER | Microsoft Windows ATMFD font driver malformed OTF file out-of-bounds memory access attempt | off | drop | drop |
1 | 39266 | OS-WINDOWS | Microsoft Windows GdiPlus malformed EMF file out of bounds read attempt | off | off | drop |
1 | 39267 | OS-WINDOWS | Microsoft Windows GdiPlus malformed EMF file out of bounds read attempt | off | off | drop |
1 | 39269 | FILE-FLASH | Adobe Flash TextFormat.setTabStops use-after-free attempt | off | drop | drop |
1 | 39270 | FILE-FLASH | Adobe Flash TextFormat.setTabStops use-after-free attempt | off | drop | drop |
1 | 39271 | FILE-FLASH | Adobe Flash Player ShimContentFactory uninitialized pointer use attempt | off | drop | drop |
1 | 39272 | FILE-FLASH | Adobe Flash Player ShimContentFactory uninitialized pointer use attempt | off | drop | drop |
1 | 39275 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39276 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39277 | FILE-OTHER | Adobe Flash Player malformed JPEG XR heap overflow attempt | off | drop | drop |
1 | 39278 | FILE-OTHER | Adobe Flash Player malformed JPEG XR heap overflow attempt | off | drop | drop |
1 | 39279 | FILE-FLASH | Adobe Primetime SDK object type confusion overflow attempt | off | drop | drop |
1 | 39280 | FILE-FLASH | Adobe Primetime SDK object type confusion overflow attempt | off | drop | drop |
1 | 39281 | FILE-FLASH | Adobe Flash Player malformed JPEG-XR out of bounds memory access attempt | off | drop | drop |
1 | 39282 | FILE-FLASH | Adobe Flash Player malformed JPEG-XR out of bounds memory access attempt | off | drop | drop |
1 | 39283 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39284 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39285 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39286 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39287 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39288 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39289 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39290 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39291 | FILE-FLASH | Adobe Flash Player NetConnection object type confusion overflow attempt | off | drop | drop |
1 | 39292 | FILE-FLASH | Adobe Flash Player NetConnection object type confusion overflow attempt | off | drop | drop |
1 | 39293 | FILE-FLASH | Adobe Flash Player apphelp.dll dll-load exploit attempt | off | off | alert |
1 | 39294 | FILE-FLASH | Adobe Flash Player dbghelp.dll dll-load exploit attempt | off | off | alert |
1 | 39295 | FILE-FLASH | Adobe Flash Player apphelp.dll dll-load exploit attempt | off | off | alert |
1 | 39296 | FILE-FLASH | Adobe Flash Player dbghelp.dll dll-load exploit attempt | off | off | alert |
1 | 39297 | FILE-FLASH | Adobe Flash player retrieveResolvers memory corruption attempt | off | drop | drop |
1 | 39298 | FILE-FLASH | Adobe Flash player retrieveResolvers memory corruption attempt | off | drop | drop |
1 | 39299 | FILE-FLASH | Adobe Flash Player malformed regular expression use after free attempt | off | drop | drop |
1 | 39300 | FILE-FLASH | Adobe Flash Player malformed regular expression use after free attempt | off | drop | drop |
1 | 39301 | FILE-FLASH | Adobe Flash Player ExecPolicy invalid string table lookup attempt | off | drop | drop |
1 | 39302 | FILE-FLASH | Adobe Flash Player ExecPolicy invalid string table lookup attempt | off | drop | drop |
1 | 39304 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39305 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39306 | FILE-FLASH | Adobe Flash Player sound object use-after-free attempt | off | drop | drop |
1 | 39307 | FILE-FLASH | Adobe Flash Player sound object use-after-free attempt | off | drop | drop |
1 | 39310 | FILE-FLASH | Adobe Flash Player same origin policy security bypass attempt | off | drop | drop |
1 | 39311 | FILE-FLASH | Adobe Flash Player same origin policy security bypass attempt | off | drop | drop |
1 | 39312 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format image load memory corruption attempt | off | off | drop |
1 | 39313 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format image load memory corruption attempt | off | off | drop |
1 | 39314 | FILE-FLASH | Adobe Flash Player RegExp numbered backreference out of bounds read attempt | off | off | drop |
1 | 39315 | FILE-FLASH | Adobe Flash Player RegExp numbered backreference out of bounds read attempt | off | off | drop |
1 | 39316 | FILE-FLASH | Adobe Flash Player MovieClip object use-after-free attempt | off | drop | drop |
1 | 39317 | FILE-FLASH | Adobe Flash Player MovieClip object use-after-free attempt | off | drop | drop |
1 | 39318 | FILE-FLASH | Adobe Flash Player ShimOpportunityGenerator out of bounds memory access attempt | off | drop | drop |
1 | 39319 | FILE-FLASH | Adobe Flash Player ShimOpportunityGenerator out of bounds memory access attempt | off | drop | drop |
1 | 39359 | SERVER-WEBAPP | WordPress Ninja Forms nf_async_upload arbitrary PHP file upload attempt | off | off | drop |
1 | 39380 | SERVER-OTHER | Symantec MIME parser updateheader heap buffer overflow attempt | off | off | alert |
1 | 39385 | FILE-OTHER | Symantec Norton Antivirus ccScanw.dll Unpack ShortLZ memory corruption attempt | off | drop | drop |
1 | 39386 | FILE-OTHER | Symantec Norton Antivirus ccScanw.dll Unpack ShortLZ memory corruption attempt | off | drop | drop |
1 | 39399 | SERVER-WEBAPP | Symantec open redirect in external URL .php script attempt | off | off | drop |
1 | 39400 | SERVER-WEBAPP | Symantec Decomposer Engine Dec2LHA buffer overflow attempt | off | drop | drop |
1 | 39401 | SERVER-WEBAPP | Symantec Decomposer Engine Dec2LHA buffer overflow attempt | off | drop | drop |
1 | 39402 | FILE-OTHER | Symantec Antivirus ALPkOldFormatDecompressor out of bounds read attempt | off | drop | drop |
1 | 39403 | FILE-OTHER | Symantec Antivirus ALPkOldFormatDecompressor out of bounds read attempt | off | drop | drop |
1 | 39404 | SERVER-OTHER | Symantec Endpoint Protection Manager cross site request forgery attempt | off | drop | drop |
1 | 39405 | SERVER-OTHER | Symantec Endpoint Protection Manager cross site request forgery attempt | off | drop | drop |
1 | 39417 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39418 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39419 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39420 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39421 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39422 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39423 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39424 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39425 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39426 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39427 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39428 | FILE-OFFICE | Symantec multiple product Dec2SS PowerPoint file buffer overflow attempt | off | drop | drop |
1 | 39431 | FILE-OTHER | Symantec TNEF decoder integer overflow attempt | off | drop | drop |
1 | 39432 | FILE-OTHER | Symantec TNEF decoder integer overflow attempt | off | drop | drop |
1 | 39454 | FILE-PDF | Adobe Acrobat Reader U3D e3_bone object out of bounds memory access attempt | off | drop | drop |
1 | 39455 | FILE-PDF | Adobe Acrobat Reader U3D e3_bone object out of bounds memory access attempt | off | drop | drop |
1 | 39478 | OS-WINDOWS | Microsoft Windows NtGdiSelectPen privilege escalation attempt | off | drop | drop |
1 | 39479 | OS-WINDOWS | Microsoft Windows NtGdiSelectPen privilege escalation attempt | off | drop | drop |
1 | 39480 | OS-WINDOWS | Microsoft Windows win32k out of bound read attempt | off | off | drop |
1 | 39481 | OS-WINDOWS | Microsoft Windows win32k out of bound read attempt | off | off | drop |
1 | 39482 | OS-WINDOWS | Microsoft Windows NtUserDraw privilege escalation attempt | off | drop | drop |
1 | 39483 | OS-WINDOWS | Microsoft Windows NtUserDraw privilege escalation attempt | off | drop | drop |
1 | 39486 | BROWSER-IE | Microsoft Edge chakra.dll invalid pointer access attempt | off | drop | drop |
1 | 39487 | BROWSER-IE | Microsoft Edge chakra.dll invalid pointer access attempt | off | drop | drop |
1 | 39491 | BROWSER-IE | Microsoft Internet Explorer Dxtrans table element use after free attempt | off | drop | drop |
1 | 39492 | BROWSER-IE | Microsoft Internet Explorer Dxtrans table element use after free attempt | off | drop | drop |
1 | 39493 | BROWSER-IE | Microsoft Edge edgehtml negative length out of bound memory copy attempt | off | drop | drop |
1 | 39494 | BROWSER-IE | Microsoft Edge edgehtml negative length out of bound memory copy attempt | off | drop | drop |
1 | 39495 | OS-WINDOWS | Microsoft Windows win32k.sys desktop switch use after free attempt | off | drop | drop |
1 | 39496 | OS-WINDOWS | Microsoft Windows win32k.sys desktop switch use after free attempt | off | drop | drop |
1 | 39499 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll invalid resize use after free attempt | off | drop | drop |
1 | 39500 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll invalid resize use after free attempt | off | drop | drop |
1 | 39503 | FILE-OFFICE | Microsoft Office Word wwlib out-of-bounds memory access attempt | off | drop | drop |
1 | 39504 | FILE-OFFICE | Microsoft Office Word wwlib out-of-bounds memory access attempt | off | drop | drop |
1 | 39505 | BROWSER-IE | Microsoft Internet Explorer Edge text node table-cell use after free attempt | off | drop | drop |
1 | 39508 | OS-WINDOWS | Microsoft Windows EndDeferWindowPos null page dereference attempt | off | drop | drop |
1 | 39509 | OS-WINDOWS | Microsoft Windows EndDeferWindowPos null page dereference attempt | off | drop | drop |
1 | 39510 | BROWSER-IE | Microsoft Edge bypassing window.opener protection attempt | off | off | drop |
1 | 39511 | BROWSER-IE | Microsoft Edge bypassing window.opener protection attempt | off | off | drop |
1 | 39514 | BROWSER-IE | Microsoft Internet Explorer textTransform out-of-bounds memory access attempt | off | drop | drop |
1 | 39515 | BROWSER-IE | Microsoft Internet Explorer textTransform out-of-bounds memory access attempt | off | drop | drop |
1 | 39516 | OS-WINDOWS | Microsoft Windows win32kfull.sys out of bounds read attempt | off | drop | drop |
1 | 39517 | OS-WINDOWS | Microsoft Windows win32kfull.sys out of bounds read attempt | off | drop | drop |
1 | 39518 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds memory access attempt | off | drop | drop |
1 | 39519 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds memory access attempt | off | drop | drop |
1 | 39520 | FILE-OFFICE | Microsoft Office Word unsupported XML schema out of bounds read attempt | off | drop | drop |
1 | 39521 | FILE-OFFICE | Microsoft Office Word unsupported XML schema out of bounds read attempt | off | off | drop |
1 | 39522 | FILE-OFFICE | Microsoft Office Word unsupported XML schema out of bounds read attempt | off | drop | drop |
1 | 39523 | FILE-OFFICE | Microsoft Office Word unsupported XML schema out of bounds read attempt | off | drop | drop |
1 | 39530 | BROWSER-IE | Microsoft Edge clientInformation.geolocation.getCurrentPosition use-after-free attempt | off | drop | drop |
1 | 39531 | BROWSER-IE | Microsoft Edge clientInformation.geolocation.getCurrentPosition use-after-free attempt | off | drop | drop |
1 | 39532 | FILE-PDF | Adobe Acrobat Reader XSL multi-dimensional array memory corruption attempt | off | drop | drop |
1 | 39533 | FILE-PDF | Adobe Acrobat Reader XSL multi-dimensional array memory corruption attempt | off | drop | drop |
1 | 39534 | FILE-PDF | Adobe Acrobat Reader embedded TTF name record out of bounds read attempt | off | drop | drop |
1 | 39535 | FILE-PDF | Adobe Acrobat Reader embedded TTF name record out of bounds read attempt | off | drop | drop |
1 | 39536 | FILE-PDF | Adobe Acrobat Reader JPEG handling memory corruption attempt | off | drop | drop |
1 | 39537 | FILE-PDF | Adobe Acrobat Reader JPEG handling memory corruption attempt | off | drop | drop |
1 | 39538 | FILE-FLASH | Adobe Flash Player malformed tag out of bounds read attempt | off | drop | drop |
1 | 39539 | FILE-FLASH | Adobe Flash Player malformed tag out of bounds read attempt | off | drop | drop |
1 | 39540 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39541 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39542 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39543 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39544 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39545 | FILE-FLASH | Adobe Flash Player local-with-filesystem security bypass attempt | off | drop | drop |
1 | 39546 | FILE-PDF | Adobe Reader embedded TTF heap overflow attempt | off | drop | drop |
1 | 39547 | FILE-PDF | Adobe Reader embedded TTF heap overflow attempt | off | drop | drop |
1 | 39548 | FILE-FLASH | Adobe Flash Player AdTimelineItem object memory corruption attempt | off | drop | drop |
1 | 39549 | FILE-FLASH | Adobe Flash Player AdTimelineItem object memory corruption attempt | off | drop | drop |
1 | 39550 | FILE-FLASH | Adobe Flash Player MovieClip method loop use-after-free attempt | off | drop | drop |
1 | 39551 | FILE-FLASH | Adobe Flash Player MovieClip method loop use-after-free attempt | off | drop | drop |
1 | 39552 | FILE-FLASH | Adobe Flash Player ByteArray type confusion memory corruption attempt | off | drop | drop |
1 | 39553 | FILE-FLASH | Adobe Flash Player ByteArray type confusion memory corruption attempt | off | drop | drop |
1 | 39554 | FILE-FLASH | Adobe Flash Player AdBreakPlacement object memory corruption attempt | off | drop | drop |
1 | 39555 | FILE-FLASH | Adobe Flash Player AdBreakPlacement object memory corruption attempt | off | drop | drop |
1 | 39556 | FILE-PDF | Adobe Acrobat Reader PostScript font parsing memory corruption attempt | off | drop | drop |
1 | 39557 | FILE-PDF | Adobe Acrobat Reader PostScript font parsing memory corruption attempt | off | drop | drop |
1 | 39558 | FILE-FLASH | Adobe Flash Player Stage align use aftre free attempt | off | drop | drop |
1 | 39559 | FILE-FLASH | Adobe Flash Player Stage align use aftre free attempt | off | drop | drop |
1 | 39562 | SERVER-WEBAPP | Invision Power Board index.php content_class PHP code injection attempt | off | off | drop |
1 | 39563 | FILE-FLASH | Adobe Flash Player TimedEvent memory corruption attempt | off | drop | drop |
1 | 39564 | FILE-FLASH | Adobe Flash Player TimedEvent memory corruption attempt | off | drop | drop |
1 | 39565 | FILE-FLASH | Adobe Flash Player malformed tag parsing memory corruption attempt | off | drop | drop |
1 | 39566 | FILE-FLASH | Adobe Flash Player malformed tag parsing memory corruption attempt | off | drop | drop |
1 | 39569 | FILE-PDF | Adobe Acrobat Reader JPEG parsing out of bounds read attempt | off | drop | drop |
1 | 39570 | FILE-PDF | Adobe Acrobat Reader JPEG parsing out of bounds read attempt | off | drop | drop |
1 | 39571 | FILE-FLASH | Adobe Flash Player Transform object use after free attempt | off | drop | drop |
1 | 39572 | FILE-FLASH | Adobe Flash Player Transform object use after free attempt | off | drop | drop |
1 | 39591 | FILE-FLASH | Adobe Flash Player malformed TagTypeAndLength field attempt | off | drop | drop |
1 | 39592 | FILE-FLASH | Adobe Flash Player malformed TagTypeAndLength field attempt | off | drop | drop |
1 | 39601 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39602 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39603 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39604 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39605 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39606 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39608 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39609 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39610 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39611 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39612 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39613 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39614 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39616 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39617 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39618 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39619 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39620 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39621 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39622 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39623 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39624 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39625 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39626 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39627 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39628 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39629 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39630 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39631 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39632 | FILE-IMAGE | Apple OSX and iOS TIFF tile size buffer overflow attempt | off | off | drop |
1 | 39634 | FILE-IMAGE | Apple OSX EXR image invalid box2i attribute heap buffer overflow attempt | off | off | drop |
1 | 39635 | FILE-IMAGE | Apple OSX EXR image invalid box2i attribute heap buffer overflow attempt | off | off | drop |
1 | 39643 | FILE-PDF | Adobe Reader malformed CID identity-H font file out of bounds read attempt | off | drop | drop |
1 | 39644 | FILE-PDF | Adobe Reader malformed CID identity-H font file out of bounds read attempt | off | drop | drop |
1 | 39651 | FILE-FLASH | Adobe Flash Player swapDepths use after free attempt | off | drop | drop |
1 | 39652 | FILE-FLASH | Adobe Flash Player swapDepths use after free attempt | off | drop | drop |
1 | 39656 | FILE-FLASH | Adobe Flash Player JPEG handling memory corruption attempt | off | drop | drop |
1 | 39657 | FILE-FLASH | Adobe Flash Player JPEG handling memory corruption attempt | off | drop | drop |
1 | 39658 | FILE-FLASH | Adobe Flash Player Transform getter use after free attempt | off | drop | drop |
1 | 39659 | FILE-FLASH | Adobe Flash Player Transform getter use after free attempt | off | drop | drop |
1 | 39683 | FILE-IMAGE | Apple Core Graphics BMP img_decode_read memory corruption attempt | off | drop | drop |
1 | 39684 | FILE-IMAGE | Apple Core Graphics BMP img_decode_read memory corruption attempt | off | drop | drop |
1 | 39687 | FILE-PDF | Adobe Acrobat Reader malformed embeded TTF file memory corruption attempt | off | drop | drop |
1 | 39688 | FILE-PDF | Adobe Acrobat Reader malformed embeded TTF file memory corruption attempt | off | drop | drop |
1 | 39689 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39690 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39691 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39692 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39693 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39694 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39695 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39696 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39697 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39698 | FILE-FLASH | Adobe Flash Player ABRControlParameters access memory corruption attempt | off | drop | drop |
1 | 39701 | FILE-FLASH | Adobe Flash Player MediaPlayerItemLoader out of bounds memory access attempt | off | drop | drop |
1 | 39702 | FILE-FLASH | Adobe Flash Player MediaPlayerItemLoader out of bounds memory access attempt | off | drop | drop |
1 | 39711 | FILE-FLASH | Adobe Flash Player PrintJobOptions use-after-free attempt | off | drop | drop |
1 | 39712 | FILE-FLASH | Adobe Flash Player PrintJobOptions use-after-free attempt | off | drop | drop |
1 | 39731 | FILE-PDF | Adobe Reader malformed CID identity-H font file out of bounds read attempt | off | drop | drop |
1 | 39732 | FILE-PDF | Adobe Reader malformed CID identity-H font file out of bounds read attempt | off | drop | drop |
1 | 39752 | FILE-PDF | Adobe Reader malformed ICC profile memory corruption attempt | off | drop | drop |
1 | 39753 | FILE-PDF | Adobe Reader malformed ICC profile memory corruption attempt | off | drop | drop |
1 | 39765 | SERVER-WEBAPP | Ruby on Rails ActionPack inline content rendering code injection attempt | off | off | drop |
1 | 39808 | OS-WINDOWS | Microsoft Windows graphics subcomponent local privilege escalation attempt | off | drop | drop |
1 | 39809 | OS-WINDOWS | Microsoft Windows graphics subcomponent local privilege escalation attempt | off | drop | drop |
1 | 39810 | BROWSER-IE | Microsoft Internet Explorer iertutil.dll long UNC redirect out of bounds read attempt | off | drop | drop |
1 | 39811 | BROWSER-IE | Microsoft Internet Explorer iertutil.dll long UNC redirect out of bounds read attempt | off | drop | drop |
1 | 39814 | OS-WINDOWS | Microsoft Windows Win32kfull FloodFillWindow privilege escalation attempt | off | drop | drop |
1 | 39815 | OS-WINDOWS | Microsoft Windows Win32kfull FloodFillWindow privilege escalation attempt | off | drop | drop |
1 | 39818 | OS-WINDOWS | Microsoft Windows operating system win32kfull heap corruption attempt | off | drop | drop |
1 | 39819 | OS-WINDOWS | Microsoft Windows operating system win32kfull heap corruption attempt | off | drop | drop |
1 | 39822 | BROWSER-IE | Microsoft Edge edgehtml.dll invalid history state use after free attempt | off | drop | drop |
1 | 39823 | BROWSER-IE | Microsoft Edge edgehtml.dll invalid history state use after free attempt | off | drop | drop |
1 | 39824 | OS-WINDOWS | Microsoft Windows GDI emf file integer overflow attempt | off | drop | drop |
1 | 39825 | OS-WINDOWS | Microsoft Windows GDI emf file integer overflow attempt | off | drop | drop |
1 | 39826 | BROWSER-IE | Microsoft Internet Explorer CStr internal string use-after-free attempt | off | drop | drop |
1 | 39827 | BROWSER-IE | Microsoft Internet Explorer CStr internal string use-after-free attempt | off | drop | drop |
1 | 39828 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll cached object use after free attempt | off | drop | drop |
1 | 39829 | BROWSER-IE | Microsoft Internet Explorer mshtml.dll cached object use after free attempt | off | drop | drop |
1 | 39833 | BROWSER-IE | Microsoft Internet Explorer InsertSelectDropdown use after free attempt | off | drop | drop |
1 | 39834 | BROWSER-IE | Microsoft Internet Explorer InsertSelectDropdown use after free attempt | off | drop | drop |
1 | 39837 | FILE-OFFICE | Microsoft Office mso.dll out of bounds memory access attempt | off | drop | drop |
1 | 39838 | FILE-OFFICE | Microsoft Office mso.dll out of bounds memory access attempt | off | drop | drop |
1 | 39841 | OS-WINDOWS | Microsoft Windows win32kbase bOutline out of bounds read attempt | off | drop | drop |
1 | 39842 | OS-WINDOWS | Microsoft Windows win32kbase bOutline out of bounds read attempt | off | drop | drop |
1 | 39845 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance debugging_center_utils command injection attempt | off | off | drop |
1 | 39846 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance debugging_center_utils command injection attempt | off | off | drop |
1 | 39847 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance handle_daylightsaving command injection attempt | off | off | drop |
1 | 39848 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance handle_daylightsaving command injection attempt | off | off | drop |
1 | 39849 | SERVER-WEBAPP | Trend Micro Smart Protection Server ccca_ajaxhandler.php command injection attempt | off | off | drop |
1 | 39850 | SERVER-WEBAPP | Trend Micro Smart Protection Server ccca_ajaxhandler.php command injection attempt | off | off | drop |
1 | 39864 | FILE-PDF | Adobe Reader CoolType engine FlateDecode use-after-free attempt | off | drop | drop |
1 | 39865 | FILE-PDF | Adobe Reader CoolType engine FlateDecode use-after-free attempt | off | drop | drop |
1 | 39881 | INDICATOR-COMPROMISE | Meteocontrol WEBlog config containing passwords download attempt | off | off | drop |
1 | 39883 | FILE-IMAGE | FreeImage library XPM handling out of bounds write attempt | off | off | drop |
1 | 39884 | FILE-IMAGE | FreeImage library XPM handling out of bounds write attempt | off | off | drop |
1 | 39890 | FILE-PDF | Adobe Acrobat invalid embedded font memory corruption attempt | off | off | drop |
1 | 39912 | SERVER-WEBAPP | Trend Micro Smart Protection Server admin_notification.php command injection attempt | off | off | drop |
1 | 39913 | SERVER-WEBAPP | Trend Micro Smart Protection Server admin_notification.php command injection attempt | off | off | drop |
1 | 39978 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance cgi_main command injection attempt | off | off | drop |
1 | 39979 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance cgi_main command injection attempt | off | off | drop |
1 | 39980 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance cgi_main command injection attempt | off | off | drop |
1 | 39981 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance cgi_main stack buffer overflow attempt | off | off | drop |
1 | 39982 | SERVER-WEBAPP | Netgear ReadyNAS Surveillance cgi_main stack buffer overflow attempt | off | off | drop |
1 | 40041 | SERVER-WEBAPP | Meinberg LANTIME NTP appliance stack buffer overflow attempt | off | off | drop |
1 | 40042 | SERVER-WEBAPP | Meinberg LANTIME NTP appliance stack buffer overflow attempt | off | off | drop |
1 | 40075 | FILE-OFFICE | Microsoft Office Excel LPenHelper out of bounds write attempt | off | drop | drop |
1 | 40076 | FILE-OFFICE | Microsoft Office Excel LPenHelper out of bounds write attempt | off | drop | drop |
1 | 40077 | BROWSER-IE | Microsoft Internet Explorer protected mode sandbox escape attempt | off | off | drop |
1 | 40078 | BROWSER-IE | Microsoft Internet Explorer protected mode sandbox escape attempt | off | off | drop |
1 | 40079 | FILE-OFFICE | Microsoft Office Visio visdlgu.dll dll-load exploit attempt | off | drop | drop |
1 | 40080 | FILE-OFFICE | Microsoft Office Visio visdlgu.dll dll-load exploit attempt | off | drop | drop |
1 | 40082 | FILE-OFFICE | Microsoft Office Excel Ordinal43 out of bounds read attempt | off | drop | drop |
1 | 40083 | FILE-OFFICE | Microsoft Office Excel Ordinal43 out of bounds read attempt | off | drop | drop |
1 | 40096 | OS-WINDOWS | Microsoft Windows 7 Win32k ValidateZorder privilege escalation attempt | off | drop | drop |
1 | 40097 | OS-WINDOWS | Microsoft Windows 7 Win32k ValidateZorder privilege escalation attempt | off | drop | drop |
1 | 40098 | BROWSER-IE | Microsoft Edge proxy object type confusion attempt | off | drop | drop |
1 | 40099 | BROWSER-IE | Microsoft Edge proxy object type confusion attempt | off | drop | drop |
1 | 40102 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40103 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40104 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40105 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40106 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40107 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40110 | OS-WINDOWS | Microsoft Windows Server Ntoskrnl concurrent login attempt | off | drop | drop |
1 | 40111 | OS-WINDOWS | Microsoft Windows Server Ntoskrnl concurrent login attempt | off | drop | drop |
1 | 40112 | OS-WINDOWS | Microsoft Windows 10 GDI privilege escalation attempt | off | drop | drop |
1 | 40113 | OS-WINDOWS | Microsoft Windows 10 GDI privilege escalation attempt | off | drop | drop |
1 | 40114 | OS-WINDOWS | Microsoft Windows 10 privilege escalation attempt | off | drop | drop |
1 | 40115 | OS-WINDOWS | Microsoft Windows 10 privilege escalation attempt | off | drop | drop |
1 | 40116 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40117 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40121 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40122 | FILE-OFFICE | Microsoft Office Excel xlsb use-after-free attempt | off | drop | drop |
1 | 40127 | OS-WINDOWS | Microsoft Windows 10 and 8.1 registry key privilege escalation attempt | off | drop | drop |
1 | 40128 | OS-WINDOWS | Microsoft Windows 10 and 8.1 registry key privilege escalation attempt | off | drop | drop |
1 | 40134 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40135 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40136 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40137 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40138 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40139 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40140 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40141 | BROWSER-IE | Microsoft Edge HTML normalize caption memory corruption attempt | off | off | drop |
1 | 40142 | FILE-OFFICE | Microsoft PowerPoint bogus JPEG marker length heap buffer overflow | off | off | drop |
1 | 40143 | FILE-OFFICE | Microsoft PowerPoint bogus JPEG marker length heap buffer overflow | off | off | drop |
1 | 40147 | FILE-OFFICE | Microsoft Office PowerPoint ppcore invalid pointer reference attempt | off | drop | drop |
1 | 40148 | FILE-OFFICE | Microsoft Office PowerPoint ppcore invalid pointer reference attempt | off | drop | drop |
1 | 40151 | FILE-FLASH | Adobe Flash Player DRMManager memory corruption attempt | off | drop | drop |
1 | 40152 | FILE-FLASH | Adobe Flash Player DRMManager memory corruption attempt | off | drop | drop |
1 | 40153 | FILE-FLASH | Adobe Flash Player malformed VideoFrame memory corruption attempt | off | drop | drop |
1 | 40154 | FILE-FLASH | Adobe Flash Player malformed VideoFrame memory corruption attempt | off | drop | drop |
1 | 40155 | FILE-FLASH | Adobe Flash AVC Decoder Memory Corruption attempt | off | off | drop |
1 | 40156 | FILE-FLASH | Adobe Flash AVC Decoder Memory Corruption attempt | off | off | drop |
1 | 40157 | FILE-FLASH | Adobe Flash Player malformed placeObject2 memory corruption attempt | off | drop | drop |
1 | 40158 | FILE-FLASH | Adobe Flash Player malformed placeObject2 memory corruption attempt | off | drop | drop |
1 | 40159 | FILE-FLASH | Adobe Flash Player NetStream type confusion attempt | off | drop | drop |
1 | 40160 | FILE-FLASH | Adobe Flash Player NetStream type confusion attempt | off | drop | drop |
1 | 40166 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 40167 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 40168 | FILE-FLASH | Adobe Flash Player DisplacementMapFilter use-after-free attempt | off | drop | drop |
1 | 40169 | FILE-FLASH | Adobe Flash Player DisplacementMapFilter use-after-free attempt | off | drop | drop |
1 | 40176 | FILE-FLASH | Adobe Flash ContextMenu Clone memory corruption vulnerability attempt | off | off | drop |
1 | 40177 | FILE-FLASH | Adobe Flash ContextMenu Clone memory corruption vulnerability attempt | off | off | drop |
1 | 40178 | FILE-FLASH | Adobe Flash Player local-with-filesystem sandbox escape attempt | off | drop | drop |
1 | 40179 | FILE-FLASH | Adobe Flash Player local-with-filesystem sandbox escape attempt | off | drop | drop |
1 | 40180 | FILE-FLASH | Adobe Flash Player local-with-filesystem sandbox escape attempt | off | drop | drop |
1 | 40181 | FILE-FLASH | Adobe Flash Player local-with-filesystem sandbox escape attempt | off | drop | drop |
1 | 40218 | FILE-FLASH | Adobe Flash Player AS2 custom getter addProperty use after free attempt | off | drop | drop |
1 | 40219 | FILE-FLASH | Adobe Flash Player AS2 custom getter addProperty use after free attempt | off | drop | drop |
1 | 40236 | FILE-PDF | Adobe Reader embedded font out of bounds memory access attempt | off | drop | drop |
1 | 40237 | FILE-PDF | Adobe Reader embedded font out of bounds memory access attempt | off | drop | drop |
1 | 40241 | SERVER-OTHER | Fortigate Firewall HTTP cookie buffer overflow | off | off | drop |
1 | 40253 | SERVER-MYSQL | Multiple SQL products privilege escalation attempt | off | off | drop |
1 | 40254 | SERVER-MYSQL | Multiple SQL products privilege escalation attempt | off | off | drop |
1 | 40314 | FILE-IMAGE | OpenJPEG JPEG2000 MCC record parsing heap memory corruption attempt | off | off | drop |
1 | 40315 | FILE-IMAGE | OpenJPEG JPEG2000 MCC record parsing heap memory corruption attempt | off | off | drop |
1 | 40336 | FILE-PDF | Iceni Argus ipfSetColourStroke stack buffer overflow attempt | off | off | drop |
1 | 40337 | FILE-PDF | Iceni Argus ipfSetColourStroke stack buffer overflow attempt | off | off | drop |
1 | 40359 | SERVER-APACHE | Apache Struts xslt.location local file inclusion attempt | off | drop | drop |
1 | 40363 | BROWSER-FIREFOX | Mozilla Firefox CSP report-uri arbitrary file write attempt | off | off | drop |
1 | 40368 | FILE-OFFICE | Microsoft Office Word RTF file parsing buffer overflow attempt | off | drop | drop |
1 | 40369 | FILE-OFFICE | Microsoft Office Word RTF file parsing buffer overflow attempt | off | drop | drop |
1 | 40372 | BROWSER-IE | Microsoft Windows Edge emodel use after free attempt | off | drop | drop |
1 | 40373 | BROWSER-IE | Microsoft Windows Edge emodel use after free attempt | off | drop | drop |
1 | 40374 | OS-WINDOWS | Microsoft Windows insecure BoundaryDescriptor privilege escalation attempt | off | drop | drop |
1 | 40375 | OS-WINDOWS | Microsoft Windows insecure BoundaryDescriptor privilege escalation attempt | off | drop | drop |
1 | 40378 | BROWSER-IE | Microsoft Internet Explorer iframe type confusion attempt | off | drop | drop |
1 | 40379 | BROWSER-IE | Microsoft Internet Explorer iframe type confusion attempt | off | drop | drop |
1 | 40380 | OS-WINDOWS | Microsoft Windows win32kfull.sys FBitsTouch use after free attempt | off | drop | drop |
1 | 40381 | OS-WINDOWS | Microsoft Windows win32kfull.sys FBitsTouch use after free attempt | off | drop | drop |
1 | 40392 | OS-WINDOWS | Microsoft Windows Ntoskrnl privilege escalation attempt | off | drop | drop |
1 | 40393 | OS-WINDOWS | Microsoft Windows Ntoskrnl privilege escalation attempt | off | drop | drop |
1 | 40396 | OS-WINDOWS | Microsoft Windows Edge DACL privilege escalation attempt | off | drop | drop |
1 | 40397 | OS-WINDOWS | Microsoft Windows Edge DACL privilege escalation attempt | off | drop | drop |
1 | 40398 | OS-WINDOWS | Microsoft Windows Diagnostics Hub dll load from stream attempt | off | drop | drop |
1 | 40399 | OS-WINDOWS | Microsoft Windows Diagnostics Hub dll load from stream attempt | off | drop | drop |
1 | 40400 | OS-WINDOWS | Microsoft Windows 10 arbitrary registry key access privelege escalation attempt | off | drop | drop |
1 | 40401 | OS-WINDOWS | Microsoft Windows 10 arbitrary registry key access privelege escalation attempt | off | drop | drop |
1 | 40402 | OS-WINDOWS | Microsoft Windows user hive impersonation privelege escalation attempt | off | drop | drop |
1 | 40403 | OS-WINDOWS | Microsoft Windows user hive impersonation privelege escalation attempt | off | drop | drop |
1 | 40408 | FILE-OTHER | Microsoft Windows malformed TrueType file RCVT out of bounds read attempt | off | drop | drop |
1 | 40409 | FILE-OTHER | Microsoft Windows malformed TrueType file RCVT out of bounds read attempt | off | drop | drop |
1 | 40410 | OS-WINDOWS | Microsoft Windows win32k.sys ExtTextOut memory corruption attempt | off | drop | drop |
1 | 40411 | OS-WINDOWS | Microsoft Windows win32k.sys ExtTextOut memory corruption attempt | off | drop | drop |
1 | 40412 | OS-WINDOWS | Microsoft Windows registry hive privilege escalation attempt | off | drop | drop |
1 | 40413 | OS-WINDOWS | Microsoft Windows registry hive privilege escalation attempt | off | drop | drop |
1 | 40418 | OS-WINDOWS | Microsoft Windows DFS client driver privilege escalation attempt | off | drop | drop |
1 | 40419 | OS-WINDOWS | Microsoft Windows DFS client driver privilege escalation attempt | off | drop | drop |
1 | 40420 | BROWSER-IE | Microsoft Internet Explorer readyState property information disclosure attempt | off | off | drop |
1 | 40421 | BROWSER-IE | Microsoft Internet Explorer readyState property information disclosure attempt | off | off | drop |
1 | 40423 | BROWSER-IE | Microsoft Windows Edge function.apply use afterfree attempt | off | drop | drop |
1 | 40424 | BROWSER-IE | Microsoft Windows Edge function.apply use afterfree attempt | off | drop | drop |
1 | 40425 | OS-WINDOWS | Microsoft Windows GDI+ EMF buffer overread attempt | off | drop | drop |
1 | 40426 | OS-WINDOWS | Microsoft Windows GDI+ EMF buffer overread attempt | off | drop | drop |
1 | 40427 | OS-WINDOWS | Microsoft Windows Win32k.sys sbit_Embolden use after free attempt | off | drop | drop |
1 | 40428 | OS-WINDOWS | Microsoft Windows Win32k.sys sbit_Embolden use after free attempt | off | drop | drop |
1 | 40434 | FILE-FLASH | Adobe Flash Player malformed ActionConstantPool memory corruption attempt | off | off | drop |
1 | 40435 | FILE-FLASH | Adobe Flash Player malformed ActionConstantPool memory corruption attempt | off | off | drop |
1 | 40436 | FILE-PDF | Adobe Acrobat Reader XSLT substring memory corruption attempt | off | drop | drop |
1 | 40437 | FILE-PDF | Adobe Acrobat Reader XSLT substring memory corruption attempt | off | drop | drop |
1 | 40438 | FILE-FLASH | Adobe Standalone Flash Player AS3 NetStream object use after free attempt | off | drop | drop |
1 | 40439 | FILE-FLASH | Adobe Standalone Flash Player AS3 NetStream object use after free attempt | off | drop | drop |
1 | 40440 | FILE-PDF | Adobe Reader TrueType font file numberofmetrics out of bounds read attempt | off | drop | drop |
1 | 40441 | FILE-PDF | Adobe Reader TrueType font file numberofmetrics out of bounds read attempt | off | drop | drop |
1 | 40442 | FILE-FLASH | Adobe Flash Player FrameLabel memory corruption attempt | off | drop | drop |
1 | 40443 | FILE-FLASH | Adobe Flash Player FrameLabel memory corruption attempt | off | drop | drop |
1 | 40451 | SERVER-WEBAPP | Symantec Messaging Gateway KavaChart Component directory traversal attempt | off | off | drop |
1 | 40452 | FILE-FLASH | Adobe Standalone Flash Player AS3 Primetime timeline ShimContentResolver out of bounds read attempt | off | drop | drop |
1 | 40453 | FILE-FLASH | Adobe Standalone Flash Player AS3 Primetime timeline ShimContentResolver out of bounds read attempt | off | drop | drop |
1 | 40455 | FILE-PDF | Adobe Acrobat Reader JPEG engine spurious object reference use after free attempt | off | drop | drop |
1 | 40456 | FILE-PDF | Adobe Acrobat Reader JPEG engine spurious object reference use after free attempt | off | drop | drop |
1 | 40488 | FILE-EXECUTABLE | Hopper Disassembler ELF section header memory corruption attempt | off | off | drop |
1 | 40489 | FILE-EXECUTABLE | Hopper Disassembler ELF section header memory corruption attempt | off | off | drop |
1 | 40495 | FILE-FLASH | Adobe Standalone Flash Player PSDK FlashRuntime mediaplayer pause attempt | off | drop | drop |
1 | 40496 | FILE-FLASH | Adobe Standalone Flash Player PSDK FlashRuntime mediaplayer pause attempt | off | drop | drop |
1 | 40502 | FILE-FLASH | Adobe Flash Player QOSProvider use-after-free attempt | off | drop | drop |
1 | 40503 | FILE-FLASH | Adobe Flash Player QOSProvider use-after-free attempt | off | drop | drop |
1 | 40505 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40506 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40507 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40508 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40509 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40510 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40511 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40512 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40513 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40514 | FILE-PDF | Adobe Reader XSLT Transform use after free attempt | off | drop | drop |
1 | 40515 | FILE-PDF | Adobe Acrobat Reader malformed unicode font name code execution attempt | off | drop | drop |
1 | 40516 | FILE-PDF | Adobe Acrobat Reader malformed unicode font name code execution attempt | off | drop | drop |
1 | 40539 | FILE-IMAGE | LibTIFF PixarLogDecode heap buffer overflow attempt | off | off | drop |
1 | 40540 | FILE-IMAGE | LibTIFF PixarLogDecode heap buffer overflow attempt | off | off | drop |
1 | 40542 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40543 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40544 | FILE-FLASH | Adobe Standalone Flash Player IExternalizable deserialization use after free attempt | off | drop | drop |
1 | 40545 | FILE-FLASH | Adobe Standalone Flash Player IExternalizable deserialization use after free attempt | off | drop | drop |
1 | 40546 | FILE-PDF | Adobe Reader JavaScript API privileged function bypass attempt | off | off | drop |
1 | 40547 | FILE-PDF | Adobe Reader JavaScript API privileged function bypass attempt | off | off | drop |
1 | 40557 | FILE-PDF | Adobe Acrobat Reader malformed object stream memory corruption attempt | off | drop | drop |
1 | 40558 | FILE-PDF | Adobe Acrobat Reader malformed object stream memory corruption attempt | off | drop | drop |
1 | 40560 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40561 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40563 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40565 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40566 | OS-LINUX | Linux kernel madvise race condition attempt | off | drop | drop |
1 | 40569 | FILE-PDF | Adobe Acrobat Reader XFA relayoutPageArea memory corruption attempt | off | drop | drop |
1 | 40570 | FILE-PDF | Adobe Acrobat Reader XFA relayoutPageArea memory corruption attempt | off | drop | drop |
1 | 40575 | FILE-PDF | Adobe Acrobat Reader XFA excelGroup memory corruption attempt | off | drop | drop |
1 | 40576 | FILE-PDF | Adobe Acrobat Reader XFA excelGroup memory corruption attempt | off | drop | drop |
1 | 40577 | FILE-PDF | Adobe Reader XFA remerge JavaScript use after free attempt | off | drop | drop |
1 | 40578 | FILE-PDF | Adobe Reader XFA remerge JavaScript use after free attempt | off | drop | drop |
1 | 40581 | FILE-FLASH | Adobe Flash Player sentEvent use after free attempt | off | drop | drop |
1 | 40582 | FILE-FLASH | Adobe Flash Player sentEvent use after free attempt | off | drop | drop |
1 | 40583 | FILE-FLASH | Adobe Flash Player event handler out of bounds memory access attempt | off | drop | drop |
1 | 40584 | FILE-FLASH | Adobe Flash Player event handler out of bounds memory access attempt | off | drop | drop |
1 | 40585 | FILE-PDF | Adobe Acrobat Reader SaveAs use-after-free attempt | off | drop | drop |
1 | 40586 | FILE-PDF | Adobe Acrobat Reader SaveAs use-after-free attempt | off | drop | drop |
1 | 40587 | FILE-PDF | Adobe Reader XLST parsing engine use after free attempt | off | drop | drop |
1 | 40588 | FILE-PDF | Adobe Reader XLST parsing engine use after free attempt | off | drop | drop |
1 | 40602 | FILE-PDF | Adobe Reader XFA exclGroup JavaScript out of bounds memory access attempt | off | drop | drop |
1 | 40603 | FILE-PDF | Adobe Reader XFA exclGroup JavaScript out of bounds memory access attempt | off | drop | drop |
1 | 40639 | FILE-PDF | Adobe Acrobat Reader XFA addInstance use after free attempt | off | drop | drop |
1 | 40640 | FILE-PDF | Adobe Acrobat Reader XFA addInstance use after free attempt | off | drop | drop |
1 | 40641 | FILE-PDF | Adobe Reader XFA relayoutPageArea JavaScript out of bounds memory access attempt | off | off | drop |
1 | 40642 | FILE-PDF | Adobe Reader XFA relayoutPageArea JavaScript out of bounds memory access attempt | off | off | drop |
1 | 40653 | BROWSER-IE | Microsoft Internet Explorer msSaveBlob use after free attempt | off | drop | drop |
1 | 40654 | BROWSER-IE | Microsoft Internet Explorer msSaveBlob use after free attempt | off | drop | drop |
1 | 40655 | BROWSER-IE | Microsoft Internet Explorer Chakra.dll Array.filter type confusion attempt | off | drop | drop |
1 | 40656 | BROWSER-IE | Microsoft Internet Explorer Chakra.dll Array.filter type confusion attempt | off | drop | drop |
1 | 40657 | OS-WINDOWS | Microsoft Windows clfs.sys local privilege escalation attempt | off | drop | drop |
1 | 40658 | OS-WINDOWS | Microsoft Windows clfs.sys local privilege escalation attempt | off | drop | drop |
1 | 40659 | BROWSER-IE | Microsoft Edge Chakra.dll Array.splice heap overflow attempt | off | drop | drop |
1 | 40660 | BROWSER-IE | Microsoft Edge Chakra.dll Array.splice heap overflow attempt | off | drop | drop |
1 | 40663 | OS-WINDOWS | Microsoft Windows NtGdiSetBitmapAttributes privilege escalation attempt | off | drop | drop |
1 | 40664 | OS-WINDOWS | Microsoft Windows NtGdiSetBitmapAttributes privilege escalation attempt | off | drop | drop |
1 | 40665 | OS-WINDOWS | Microsoft Windows keybd_event type confusion code execution attempt | off | drop | drop |
1 | 40666 | OS-WINDOWS | Microsoft Windows keybd_event type confusion code execution attempt | off | drop | drop |
1 | 40667 | FILE-OFFICE | Microsoft Office Word PrcData out of bounds read attempt | off | drop | drop |
1 | 40668 | FILE-OFFICE | Microsoft Office Word PrcData out of bounds read attempt | off | drop | drop |
1 | 40671 | OS-WINDOWS | Microsoft windows InProcServer32 privilege escalation attempt | off | off | drop |
1 | 40672 | OS-WINDOWS | Microsoft windows InProcServer32 privilege escalation attempt | off | off | drop |
1 | 40673 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 40674 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 40675 | BROWSER-IE | Microsoft Edge video html tag buffer overflow attempt | off | drop | drop |
1 | 40676 | BROWSER-IE | Microsoft Edge video html tag buffer overflow attempt | off | drop | drop |
1 | 40677 | OS-WINDOWS | Microsoft Windows Task Scheduler SystemLocal NTLM remote path authentication challenge attempt | off | drop | drop |
1 | 40678 | OS-WINDOWS | Microsoft Windows Task Scheduler SystemLocal NTLM remote path authentication challenge attempt | off | drop | drop |
1 | 40679 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 40680 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 40681 | FILE-OFFICE | Microsoft PowerPoint ntdll out of bounds read attempt | off | drop | drop |
1 | 40682 | FILE-OFFICE | Microsoft PowerPoint ntdll out of bounds read attempt | off | drop | drop |
1 | 40683 | BROWSER-IE | Microsoft Edge stack variable memory access attempt | off | drop | drop |
1 | 40684 | BROWSER-IE | Microsoft Edge stack variable memory access attempt | off | drop | drop |
1 | 40685 | OS-WINDOWS | Microsoft Windows win32kfull.sys MegSetLensContextInformation use after free attempt | off | drop | drop |
1 | 40686 | OS-WINDOWS | Microsoft Windows win32kfull.sys MegSetLensContextInformation use after free attempt | off | drop | drop |
1 | 40687 | OS-WINDOWS | Microsoft Windows win32k.sys GetDIBits out of bounds read attempt | off | drop | drop |
1 | 40688 | OS-WINDOWS | Microsoft Windows win32k.sys GetDIBits out of bounds read attempt | off | drop | drop |
1 | 40689 | FILE-OTHER | Microsoft Windows BLF file local privilege escalation attempt | off | drop | drop |
1 | 40690 | FILE-OTHER | Microsoft Windows BLF file local privilege escalation attempt | off | drop | drop |
1 | 40691 | FILE-OTHER | Microsoft Windows BLF file local privilege escalation attempt | off | drop | drop |
1 | 40692 | FILE-OTHER | Microsoft Windows BLF file local privilege escalation attempt | off | drop | drop |
1 | 40693 | OS-WINDOWS | Microsoft Windows VHDMP generic privilege escalation attempt | off | drop | drop |
1 | 40694 | OS-WINDOWS | Microsoft Windows VHDMP generic privilege escalation attempt | off | drop | drop |
1 | 40695 | FILE-PDF | Adobe Reader parser object use-after-free attempt | off | drop | drop |
1 | 40696 | FILE-PDF | Adobe Reader parser object use-after-free attempt | off | drop | drop |
1 | 40697 | FILE-PDF | Adobe Reader MakeAccessible plugin heap overflow attempt | off | off | drop |
1 | 40698 | FILE-PDF | Adobe Reader MakeAccessible plugin heap overflow attempt | off | off | drop |
1 | 40699 | FILE-PDF | Adobe Reader MakeAccessible plugin heap overflow attempt | off | off | drop |
1 | 40700 | FILE-PDF | Adobe Reader MakeAccessible plugin heap overflow attempt | off | off | drop |
1 | 40701 | FILE-OFFICE | Microsoft Office Word out of bounds memory read attempt | off | drop | drop |
1 | 40702 | FILE-OFFICE | Microsoft Office Word out of bounds memory read attempt | off | drop | drop |
1 | 40705 | FILE-OTHER | Microsoft Windows OTF cmap table parsing integer overflow attempt | off | drop | drop |
1 | 40706 | FILE-OTHER | Microsoft Windows OTF cmap table parsing integer overflow attempt | off | drop | drop |
1 | 40717 | FILE-OFFICE | Microsoft Office Excel LPenHelper use after free attempt | off | drop | drop |
1 | 40718 | FILE-OFFICE | Microsoft Office Excel LPenHelper use after free attempt | off | drop | drop |
1 | 40719 | FILE-OFFICE | Microsoft Office Excel SST record use after free attempt | off | drop | drop |
1 | 40720 | FILE-OFFICE | Microsoft Office Excel SST record use after free attempt | off | drop | drop |
1 | 40723 | FILE-OFFICE | Microsoft Office Excel Viewer remote code execution attempt | off | drop | drop |
1 | 40724 | FILE-OFFICE | Microsoft Office Excel Viewer remote code execution attempt | off | drop | drop |
1 | 40725 | FILE-OFFICE | Microsoft Office Excel invalid signed integer attempt | off | drop | drop |
1 | 40726 | FILE-OFFICE | Microsoft Office Excel invalid signed integer attempt | off | drop | drop |
1 | 40734 | FILE-FLASH | Adobe Flash MovieClip proto chain manipulation targeting constructor use after free attempt | off | drop | drop |
1 | 40735 | FILE-FLASH | Adobe Flash MovieClip proto chain manipulation targeting constructor use after free attempt | off | drop | drop |
1 | 40736 | FILE-FLASH | Adobe Flash Player Primetime SDK AdvertisingMetadata type confustion attempt | off | drop | drop |
1 | 40737 | FILE-FLASH | Adobe Flash Player Primetime SDK AdvertisingMetadata type confustion attempt | off | drop | drop |
1 | 40738 | FILE-FLASH | Adobe Adobe Flash Player ActionExtends use after free attempt | off | drop | drop |
1 | 40739 | FILE-FLASH | Adobe Flash Player ActionExtends use after free attempt | off | drop | drop |
1 | 40740 | FILE-FLASH | Adobe Flash Player addCallback use after free attempt | off | drop | drop |
1 | 40741 | FILE-FLASH | Adobe Flash Player addCallback use after free attempt | off | drop | drop |
1 | 40742 | FILE-FLASH | Adobe Flash Player AVSegmentedSource use after free attempt | off | drop | drop |
1 | 40743 | FILE-FLASH | Adobe Flash Player AVSegmentedSource use after free attempt | off | drop | drop |
1 | 40746 | FILE-FLASH | Adobe Flash Player TextField use after free attempt | off | drop | drop |
1 | 40747 | FILE-FLASH | Adobe Flash Player TextField use after free attempt | off | drop | drop |
1 | 40748 | FILE-FLASH | Adobe Flash Player ASnative setFocus use after free attempt | off | drop | drop |
1 | 40749 | FILE-FLASH | Adobe Flash Player ASnative setFocus use after free attempt | off | drop | drop |
1 | 40750 | SERVER-WEBAPP | D-Link DIR Series Routers HNAP stack buffer overflow attempt | off | drop | drop |
1 | 40754 | SERVER-WEBAPP | Alienvault OSSIM gauge.php value SQL injection attempt | off | off | drop |
1 | 40756 | FILE-PDF | Nitro Pro PDF Font Widths tag out of bounds read attempt | off | off | drop |
1 | 40757 | FILE-PDF | Nitro Pro PDF Font Widths tag out of bounds read attempt | off | off | drop |
1 | 40758 | SERVER-OTHER | Moxa AWK-3131A backdoor root account access attempt | off | off | drop |
1 | 40776 | FILE-PDF | Nitro Pro out of bounds memory write attempt | off | drop | drop |
1 | 40777 | FILE-PDF | Nitro Pro out of bounds memory write attempt | off | drop | drop |
1 | 40779 | FILE-PDF | Acrobat Reader Open Cascade Library memory corruption attempt | off | drop | drop |
1 | 40780 | FILE-FLASH | Adobe Flash Player LoadVars use-after-free attempt | off | drop | drop |
1 | 40781 | FILE-FLASH | Adobe Flash Player LoadVars use-after-free attempt | off | drop | drop |
1 | 40787 | BROWSER-IE | Microsoft Internet Explorer iertutil.dll long UNC redirect out of bounds read attempt | off | drop | drop |
1 | 40788 | BROWSER-IE | Microsoft Internet Explorer iertutil.dll long UNC redirect out of bounds read attempt | off | drop | drop |
1 | 40791 | FILE-OTHER | HDF5 msg_dtype H5T_ARRAY heap buffer overflow attempt | off | off | drop |
1 | 40792 | FILE-OTHER | HDF5 msg_dtype H5T_ARRAY heap buffer overflow attempt | off | off | drop |
1 | 40793 | FILE-OTHER | HDF5 msg_dtype H5T_ARRAY heap buffer overflow attempt | off | off | drop |
1 | 40794 | FILE-OTHER | HDF5 msg_dtype H5T_ARRAY heap buffer overflow attempt | off | off | drop |
1 | 40798 | FILE-FLASH | Adobe Standalone Flash Player IExternalizable deserialization use after free attempt | off | drop | drop |
1 | 40799 | FILE-FLASH | Adobe Standalone Flash Player IExternalizable deserialization use after free attempt | off | drop | drop |
1 | 40801 | FILE-OTHER | HDF5 H5Z_NBIT filter heap buffer overflow attempt | off | off | drop |
1 | 40802 | FILE-OTHER | HDF5 H5Z_NBIT filter heap buffer overflow attempt | off | off | drop |
1 | 40803 | FILE-OTHER | HDF5 H5O_dtype_decode_helper heap buffer overflow attempt | off | drop | drop |
1 | 40804 | FILE-OTHER | HDF5 H5O_dtype_decode_helper heap buffer overflow attempt | off | drop | drop |
1 | 40805 | FILE-OTHER | HDF5 object modification time out of bounds write attempt | off | off | drop |
1 | 40806 | FILE-OTHER | HDF5 object modification time out of bounds write attempt | off | off | drop |
1 | 40807 | FILE-OTHER | HDF5 symbol table message out of bounds write attempt | off | off | drop |
1 | 40808 | FILE-OTHER | HDF5 symbol table message out of bounds write attempt | off | off | drop |
1 | 40809 | FILE-OTHER | HDF5 new object modification time out of bounds write attempt | off | off | drop |
1 | 40810 | FILE-OTHER | HDF5 new object modification time out of bounds write attempt | off | off | drop |
1 | 40817 | SERVER-WEBAPP | Symantec Web Gateway new_whitelist.php command injection attempt | off | off | drop |
1 | 40837 | SERVER-WEBAPP | Veritas NetBackup Appliance getLicense command injection attempt | off | off | drop |
1 | 40838 | SERVER-WEBAPP | Veritas NetBackup Appliance getLicense command injection attempt | off | off | drop |
1 | 40886 | OS-WINDOWS | Microsoft Windows keybd_event type confusion code execution attempt | off | drop | drop |
1 | 40887 | OS-WINDOWS | Microsoft Windows keybd_event type confusion code execution attempt | off | drop | drop |
1 | 40888 | BROWSER-FIREFOX | Mozilla Firefox ESR NotifyTimeChange use after free attempt | off | drop | drop |
1 | 40896 | BROWSER-FIREFOX | Mozilla Firefox ESR NotifyTimeChange use after free attempt | off | drop | drop |
1 | 40898 | OS-OTHER | Joyent SmartOS ioctl integer underflow attempt | off | drop | drop |
1 | 40899 | OS-OTHER | Joyent SmartOS ioctl integer underflow attempt | off | drop | drop |
1 | 40900 | OS-OTHER | Joyent SmartOS file system name buffer overflow attempt | off | drop | drop |
1 | 40901 | OS-OTHER | Joyent SmartOS file system name buffer overflow attempt | off | drop | drop |
1 | 40902 | OS-OTHER | Joyent SmartOS file system path buffer overflow attempt | off | drop | drop |
1 | 40903 | OS-OTHER | Joyent SmartOS file system path buffer overflow attempt | off | drop | drop |
1 | 40909 | SERVER-OTHER | Foscam C1 backdoor account ftp login attempt | off | off | drop |
1 | 40914 | FILE-IMAGE | ImageMagick LibTIFF invalid SamplesPerPixel buffer overflow attempt | off | drop | drop |
1 | 40915 | FILE-IMAGE | ImageMagick LibTIFF invalid SamplesPerPixel buffer overflow attempt | off | drop | drop |
1 | 40918 | FILE-PDF | Iceni Argus PDF uninitialized WordStyle color length code overflow attempt | off | drop | drop |
1 | 40919 | FILE-PDF | Iceni ArgusPDF convertor malformed embedded TTF file cmap table memory corruption attempt | off | off | drop |
1 | 40920 | FILE-PDF | Iceni ArgusPDF convertor malformed embedded TTF file cmap table memory corruption attempt | off | off | drop |
1 | 40923 | FILE-PDF | Iceni Argus PDF font-encoding glyphmap adjustment code execution vulnerability attempt | off | off | drop |
1 | 40924 | FILE-PDF | Iceni Argus PDF font-encoding glyphmap adjustment code execution vulnerability attempt | off | off | drop |
1 | 40925 | FILE-PDF | Iceni Argus PDF TextToPolys rasterization code execution vulnerability attempt | off | off | drop |
1 | 40926 | FILE-PDF | Iceni Argus PDF TextToPolys rasterization code execution vulnerability attempt | off | off | drop |
1 | 40927 | FILE-OFFICE | AntennaHouse HTMLFilter Doc_SetSummary remote code execution attempt | off | drop | drop |
1 | 40928 | FILE-OFFICE | AntennaHouse HTMLFilter Doc_SetSummary remote code execution attempt | off | drop | drop |
1 | 40929 | FILE-OFFICE | AntennaHouse HTMLFilter GetFontTable remote code execution attempt | off | drop | drop |
1 | 40930 | FILE-OFFICE | AntennaHouse HTMLFilter GetFontTable remote code execution attempt | off | drop | drop |
1 | 40931 | FILE-OFFICE | AntennaHouse HTMLFilter DHFSummary remote code execution attempt | off | drop | drop |
1 | 40932 | FILE-OFFICE | AntennaHouse HTMLFilter DHFSummary remote code execution attempt | off | drop | drop |
1 | 40935 | FILE-EXECUTABLE | Nvidia Windows kernel mode driver denial of service attempt | off | drop | drop |
1 | 40938 | FILE-OFFICE | Microsoft Office PowerPoint OpenType font overly large instructionLength out of bounds read attempt | off | drop | drop |
1 | 40939 | FILE-OFFICE | Microsoft Office PowerPoint OpenType font overly large instructionLength out of bounds read attempt | off | drop | drop |
1 | 40944 | FILE-OFFICE | Microsoft Office Excel CrtMlFrt record out of bounds read attempt | off | drop | drop |
1 | 40945 | FILE-OFFICE | Microsoft Office Excel CrtMlFrt record out of bounds read attempt | off | drop | drop |
1 | 40947 | OS-WINDOWS | Microsoft Windows StripSolidHorizontal out of bounds memory access attempt | off | drop | drop |
1 | 40948 | OS-WINDOWS | Microsoft Windows StripSolidHorizontal out of bounds memory access attempt | off | drop | drop |
1 | 40951 | FILE-OFFICE | Microsoft Office Word XST structure out of bounds read attempt | off | drop | drop |
1 | 40952 | FILE-OFFICE | Microsoft Office Word XST structure out of bounds read attempt | off | drop | drop |
1 | 40953 | OS-WINDOWS | Microsoft Windows ksecdd.sys kernel information disclosure attempt | off | drop | drop |
1 | 40954 | OS-WINDOWS | Microsoft Windows ksecdd.sys kernel information disclosure attempt | off | drop | drop |
1 | 40955 | OS-WINDOWS | Microsoft Windows ksecdd.sys kernel information disclosure attempt | off | drop | drop |
1 | 40956 | OS-WINDOWS | Microsoft Windows ksecdd.sys kernel information disclosure attempt | off | drop | drop |
1 | 40957 | FILE-OFFICE | Microsoft Office Excel security descriptor out of bounds read attempt | off | drop | drop |
1 | 40958 | FILE-OFFICE | Microsoft Office Excel security descriptor out of bounds read attempt | off | drop | drop |
1 | 40962 | FILE-OTHER | Microsoft Office OLE DLL side load attempt | off | drop | drop |
1 | 40963 | FILE-OFFICE | Microsoft Office Excel type confusion attempt | off | drop | drop |
1 | 40964 | FILE-OFFICE | Microsoft Office Excel type confusion attempt | off | drop | drop |
1 | 40965 | FILE-OFFICE | Microsoft Office Publisher out of bounds read attempt | off | drop | drop |
1 | 40966 | FILE-OFFICE | Microsoft Office Publisher out of bounds read attempt | off | drop | drop |
1 | 40967 | FILE-OFFICE | Microsoft Office PowerPoint WMF conversion information disclosure attempt | off | drop | drop |
1 | 40968 | FILE-OFFICE | Microsoft Office PowerPoint WMF conversion information disclosure attempt | off | drop | drop |
1 | 40971 | BROWSER-IE | Microsoft Edge spread operator memory corruption attempt | off | drop | drop |
1 | 40972 | BROWSER-IE | Microsoft Edge spread operator memory corruption attempt | off | drop | drop |
1 | 40973 | BROWSER-IE | Microsoft Edge spread operator memory corruption attempt | off | drop | drop |
1 | 40974 | BROWSER-IE | Microsoft Edge spread operator memory corruption attempt | off | drop | drop |
1 | 40977 | FILE-OFFICE | Microsoft Office Excel insecure workbook load via reference to named share attempt | off | off | alert |
1 | 40978 | FILE-OFFICE | Microsoft Office Excel insecure workbook load via reference to named share attempt | off | off | alert |
1 | 40984 | OS-WINDOWS | Microsoft Windows MSIEXEC privilege escalation attempt | off | drop | drop |
1 | 40985 | OS-WINDOWS | Microsoft Windows MSIEXEC privilege escalation attempt | off | drop | drop |
1 | 40986 | BROWSER-IE | Microsoft Internet Explorer title integer overflow attempt | off | drop | drop |
1 | 40987 | BROWSER-IE | Microsoft Internet Explorer title integer overflow attempt | off | drop | drop |
1 | 40988 | BROWSER-IE | Microsoft Internet Explorer out of bounds read attempt | off | drop | drop |
1 | 40989 | BROWSER-IE | Microsoft Internet Explorer out of bounds read attempt | off | drop | drop |
1 | 40995 | SERVER-OTHER | Alcatel Lucent OmniVista arbitrary command execution attempt | off | drop | drop |
1 | 40996 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 40997 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 40998 | FILE-FLASH | Adobe Flash Player NetConnection proxyType invalid value out of bounds read attempt | off | drop | drop |
1 | 40999 | FILE-FLASH | Adobe Flash Player NetConnection proxyType invalid value out of bounds read attempt | off | drop | drop |
1 | 41000 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41001 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41002 | FILE-FLASH | Adobe Flash Player Primetime SDK out of bounds read attempt | off | drop | drop |
1 | 41003 | FILE-FLASH | Adobe Flash Player Primetime SDK out of bounds read attempt | off | drop | drop |
1 | 41004 | FILE-FLASH | Adobe Flash Player Primetime MediaPlayerItemLoader QOSProvider object use after free attempt | off | drop | drop |
1 | 41005 | FILE-FLASH | Adobe Flash Player Primetime MediaPlayerItemLoader QOSProvider object use after free attempt | off | drop | drop |
1 | 41006 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41007 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41008 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41009 | INDICATOR-COMPROMISE | Adobe Flash Player ActionScript vulnerable RegExp verb usage detected | off | off | drop |
1 | 41010 | FILE-FLASH | Adobe Flash Player BitmapData applyFilter integer overflow attempt | off | drop | drop |
1 | 41011 | FILE-FLASH | Adobe Flash Player BitmapData applyFilter integer overflow attempt | off | drop | drop |
1 | 41012 | FILE-FLASH | Adobe Flash Player NetConnection use after free attempt | off | drop | drop |
1 | 41013 | FILE-FLASH | Adobe Flash Player NetConnection use after free attempt | off | drop | drop |
1 | 41015 | FILE-FLASH | Acrobat Flash WorkerDomain memory corruption attempt | off | drop | drop |
1 | 41016 | FILE-FLASH | Adobe Flash Player writeDynamicProperties use-after-free attempt | off | off | drop |
1 | 41017 | FILE-FLASH | Adobe Flash Player writeDynamicProperties use-after-free attempt | off | off | drop |
1 | 41020 | FILE-FLASH | Adobe Flash Player onSetFocus movie clip use after free attempt | off | off | drop |
1 | 41021 | FILE-FLASH | Adobe Flash Player onSetFocus movie clip use after free attempt | off | off | drop |
1 | 41022 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | off | drop |
1 | 41023 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | off | drop |
1 | 41024 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | off | drop |
1 | 41025 | FILE-FLASH | Adobe Flash Player addProperty use after free attempt | off | off | drop |
1 | 41032 | SERVER-WEBAPP | Trend Micro hotfix_upload.cgi command injection attempt | off | off | drop |
1 | 41040 | OS-LINUX | Ubuntu Apport CrashDB crash report code injection attempt | off | drop | drop |
1 | 41041 | OS-LINUX | Ubuntu Apport CrashDB crash report code injection attempt | off | drop | drop |
1 | 41085 | SERVER-WEBAPP | Moxa AWK-3131A webSetPingTrace command injection attempt | off | off | drop |
1 | 41086 | SERVER-WEBAPP | Oracle Opera Property Management System ProcessInfo command injection attempt | off | drop | drop |
1 | 41087 | SERVER-WEBAPP | Oracle Opera Property Management System ProcessInfo command injection attempt | off | drop | drop |
1 | 41095 | SERVER-WEBAPP | Netgear WNR2000 authentication bypass attempt | off | off | drop |
1 | 41096 | SERVER-WEBAPP | Netgear WNR2000 hidden_lang_avi stack buffer overflow attempt | off | off | drop |
1 | 41102 | SERVER-WEBAPP | Moxa AWK-3131A web application cross site scripting attempt | off | drop | drop |
1 | 41103 | SERVER-WEBAPP | Moxa AWK-3131A web application cross site scripting attempt | off | drop | drop |
1 | 41104 | SERVER-WEBAPP | Moxa AWK-3131A web application cross site scripting attempt | off | drop | drop |
1 | 41105 | SERVER-WEBAPP | Moxa AWK-3131A web application cross site scripting attempt | off | drop | drop |
1 | 41196 | FILE-PDF | Nitro Pro PDF Reader out of bounds write attempt | off | drop | drop |
1 | 41197 | FILE-PDF | Nitro Pro PDF Reader out of bounds write attempt | off | drop | drop |
1 | 41209 | SERVER-OTHER | Aerospike Database Server Fabric particle_vtable out of bounds read attempt | off | off | drop |
1 | 41212 | SERVER-OTHER | Aerospike Database Server digest_ripe message field out of bounds read attempt | off | off | drop |
1 | 41213 | SERVER-OTHER | Aerospike Database Server client batch request exploit attempt | off | off | drop |
1 | 41224 | FILE-PDF | Artifex MuPDF JBIG2 negative width value out of bounds read attempt | off | drop | drop |
1 | 41225 | FILE-PDF | Artifex MuPDF JBIG2 negative width value out of bounds read attempt | off | drop | drop |
1 | 41306 | FILE-EXECUTABLE | Invincea-X SboxDrv.sys local privilege escalation attempt | off | drop | drop |
1 | 41307 | FILE-EXECUTABLE | Invincea-X SboxDrv.sys local privilege escalation attempt | off | drop | drop |
1 | 41310 | FILE-IMAGE | libBPG restore_tqb_pixel out of bounds write attempt | off | drop | drop |
1 | 41311 | FILE-IMAGE | libBPG restore_tqb_pixel out of bounds write attempt | off | drop | drop |
1 | 41312 | FILE-EXECUTABLE | Invincea Dell Protected Workspace InvProtectDrv sandbox escape attempt | off | drop | drop |
1 | 41313 | FILE-EXECUTABLE | Invincea Dell Protected Workspace InvProtectDrv sandbox escape attempt | off | drop | drop |
1 | 41319 | FILE-PDF | Adobe Acrobat Reader cross reference table memory corruption attempt | off | drop | drop |
1 | 41320 | FILE-PDF | Adobe Acrobat Reader cross reference table memory corruption attempt | off | drop | drop |
1 | 41329 | FILE-PDF | Adobe Acrobat Reader APP13 heap overflow attempt | off | drop | drop |
1 | 41330 | FILE-PDF | Adobe Acrobat Reader APP13 heap overflow attempt | off | drop | drop |
1 | 41344 | FILE-OTHER | CorelDRAW X8 EMF invalid ihBrush field value out of bounds read attempt | off | drop | drop |
1 | 41345 | FILE-OTHER | CorelDRAW X8 EMF invalid ihBrush field value out of bounds read attempt | off | drop | drop |
1 | 41356 | SERVER-WEBAPP | Cisco Firepower Management Console 6.0 local file include attempt | off | drop | drop |
1 | 41357 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver memory corruption attempt | off | drop | drop |
1 | 41358 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver memory corruption attempt | off | drop | drop |
1 | 41470 | FILE-PDF | MuPDF Fitz library font glyph scaling code execution vulnerability attempt | off | off | drop |
1 | 41471 | FILE-PDF | MuPDF Fitz library font glyph scaling code execution vulnerability attempt | off | off | drop |
1 | 41489 | SERVER-WEBAPP | Sophos Web Security Appliance command injection attempt | off | off | drop |
1 | 41490 | SERVER-WEBAPP | Sophos Web Security Appliance command injection attempt | off | off | drop |
1 | 41513 | FILE-PDF | Adobe Reader setPersistent use after free attempt | off | off | drop |
1 | 41514 | FILE-PDF | Adobe Reader setPersistent use after free attempt | off | drop | drop |
1 | 41516 | SERVER-WEBAPP | McAfee Virus Scan Linux file existence test attempt | off | drop | drop |
1 | 41521 | SERVER-WEBAPP | McAfee Virus Scan Linux cross site scripting attempt | off | drop | drop |
1 | 41555 | BROWSER-IE | Microsoft Internet Explorer use asm memory corruption attempt | off | drop | drop |
1 | 41556 | BROWSER-IE | Microsoft Internet Explorer use asm memory corruption attempt | off | drop | drop |
1 | 41678 | SERVER-WEBAPP | Trend Micro InterScan Web Security Appliance insecure configuration import attempt | off | off | drop |
1 | 41681 | SERVER-WEBAPP | McAfee Virus Scan Linux remote code execution attempt | off | drop | drop |
1 | 41707 | SERVER-WEBAPP | McAfee Virus Scan Linux http response splitting attempt | off | off | drop |
1 | 42110 | SERVER-WEBAPP | Microsoft IIS ScStoragePathFromUrl function buffer overflow attempt | off | off | off |
1 | 42140 | FILE-IMAGE | Corel PHOTO-PAINT X8 GIF Filter Code Execution Vulnerability attempt | off | drop | drop |
1 | 42141 | FILE-IMAGE | Corel PHOTO-PAINT X8 GIF Filter Code Execution Vulnerability attempt | off | drop | drop |
1 | 42220 | SERVER-WEBAPP | BlueCoat CAS report-email command injection attempt | off | off | drop |
1 | 42248 | SERVER-WEBAPP | ProcessMaker Enterprise eventsAjax SQL injection attempt | off | off | drop |
1 | 42249 | SERVER-WEBAPP | ProcessMaker Enterprise proxy SQL injection attempt | off | off | drop |
1 | 42250 | SERVER-WEBAPP | ProcessMaker Enterprise translationsAjax.php SQL injection attempt | off | off | drop |
1 | 42251 | SERVER-WEBAPP | ProcessMaker Enterprise genericAjax SQL injection attempt | off | off | drop |
1 | 42252 | SERVER-WEBAPP | ProcessMaker Enterprise PHP object injection attempt | off | off | drop |
1 | 42333 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance admin_sys_time.cgi command injection attempt | off | off | drop |
1 | 42334 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance admin_sys_time.cgi command injection attempt | off | off | drop |
1 | 42335 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance admin_sys_time.cgi command injection attempt | off | off | drop |
1 | 42336 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance logoff.cgi directory traversal attempt | off | drop | drop |
1 | 42382 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance detected_potential_files.cgi command injection attempt | off | off | drop |
1 | 42383 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance detected_potential_files.cgi command injection attempt | off | off | drop |
1 | 42384 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance detected_potential_files.cgi command injection attempt | off | off | drop |
1 | 42403 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance cache_id command injection attempt | off | off | drop |
1 | 42404 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance cache_id command injection attempt | off | off | drop |
1 | 42405 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance cache_id command injection attempt | off | off | drop |
1 | 42930 | FILE-FLASH | Adobe Flash Player DefineBitsJPEG2 invalid length memory corruption attempt | off | drop | drop |
1 | 42931 | FILE-FLASH | Adobe Flash Player DefineBitsJPEG2 invalid length memory corruption attempt | off | drop | drop |
1 | 42955 | SERVER-WEBAPP | Trend Micro Threat Discovery Appliance upload.cgi directory traversal attempt | off | off | drop |
1 | 43257 | SERVER-WEBAPP | CA eHealth command injection command injection attempt | off | off | drop |
1 | 43258 | SERVER-WEBAPP | CA eHealth command injection command injection attempt | off | off | drop |
1 | 43272 | SERVER-WEBAPP | Advantech WebAccess openWidget directory traversal attempt directory traversal attempt | off | off | drop |
1 | 43273 | SERVER-WEBAPP | Advantech WebAccess openWidget directory traversal attempt directory traversal attempt | off | off | drop |
1 | 43274 | SERVER-WEBAPP | Advantech WebAccess openWidget directory traversal attempt directory traversal attempt | off | off | drop |
1 | 43459 | MALWARE-CNC | Win.Trojan.Doublepulsar variant successful ping response | off | drop | drop |
1 | 43545 | SERVER-WEBAPP | HPE System Management Homepage buffer overflow attempt | off | off | drop |
1 | 43548 | SERVER-WEBAPP | Brocade Network Advisor remote code execution attempt | off | off | drop |
1 | 43583 | SERVER-WEBAPP | CA eHealth command injection attempt | off | off | drop |
1 | 43584 | SERVER-WEBAPP | CA eHealth command injection attempt | off | off | drop |
1 | 43585 | SERVER-WEBAPP | CA eHealth command injection attempt | off | off | drop |
1 | 43586 | SERVER-WEBAPP | CA eHealth command injection attempt | off | off | drop |
1 | 43588 | SERVER-WEBAPP | Brocade Network Advisor directory traversal attempt | off | off | drop |
1 | 43589 | SERVER-WEBAPP | Brocade Network Advisor directory traversal attempt | off | off | drop |
1 | 43590 | SERVER-WEBAPP | Brocade Network Advisor directory traversal attempt | off | off | drop |
1 | 43645 | SERVER-WEBAPP | SonicWall Secure Remote Access diagnostics command injection attempt | off | drop | drop |
1 | 43646 | SERVER-WEBAPP | SonicWall Secure Remote Access diagnostics command injection attempt | off | drop | drop |
1 | 43647 | SERVER-WEBAPP | SonicWall Secure Remote Access diagnostics command injection attempt | off | drop | drop |
1 | 43688 | SERVER-WEBAPP | SonicWall Secure Remote Access viewcert command injection attempt | off | drop | drop |
1 | 43689 | SERVER-WEBAPP | SonicWall Secure Remote Access viewcert command injection attempt | off | drop | drop |
1 | 43690 | SERVER-WEBAPP | SonicWall Secure Remote Access viewcert command injection attempt | off | drop | drop |
1 | 43822 | SERVER-WEBAPP | Advantech SUSIAccess Server downloadCSV.jsp directory traversal attempt | off | off | drop |
1 | 43823 | SERVER-WEBAPP | Advantech SUSIAccess Server downloadCSV.jsp directory traversal attempt | off | off | drop |
1 | 43824 | SERVER-WEBAPP | Advantech SUSIAccess Server downloadCSV.jsp directory traversal attempt | off | off | drop |
1 | 44016 | FILE-FLASH | Adobe Flash Player Rectangle constructor use after free attempt | off | drop | drop |
1 | 44017 | FILE-FLASH | Adobe Flash Player Rectangle constructor use after free attempt | off | drop | drop |
1 | 44501 | SERVER-OTHER | Advantech WebAccess buffer overflow attempt | off | off | drop |
1 | 44502 | SERVER-OTHER | Advantech WebAccess buffer overflow attempt | off | off | drop |
1 | 44504 | SERVER-WEBAPP | Symantec Endpoint Protection Manager directory traversal attempt | off | off | drop |
1 | 44505 | SERVER-WEBAPP | Symantec Endpoint Protection Manager directory traversal attempt | off | off | drop |
1 | 44506 | SERVER-WEBAPP | Symantec Endpoint Protection Manager directory traversal attempt | off | off | drop |
1 | 44552 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 44553 | FILE-FLASH | Adobe Flash Player toString type confusion memory corruption attempt | off | drop | drop |
1 | 44641 | POLICY-OTHER | SERVER-WEBAPP Symantec Endpoint Protection Manager authentication lock bypass attempt | off | off | drop |
1 | 44696 | SERVER-OTHER | Advantech WebAccess MSRPC server integer overflow attempt | off | off | drop |
1 | 45212 | BROWSER-IE | Microsoft Internet Explorer out of bounds read attempt | off | drop | drop |
1 | 45213 | BROWSER-IE | Microsoft Internet Explorer out of bounds read attempt | off | drop | drop |
1 | 45243 | POLICY-OTHER | ZyXEL PK5001Z modem hardcoded admin password telnet login attempt | off | off | drop |
1 | 45244 | POLICY-OTHER | ZyXEL PK5001Z modem hardcoded root password telnet login attempt | off | off | drop |
1 | 45245 | POLICY-OTHER | ZyXEL PK5001Z modem hardcoded admin password telnet login attempt | off | off | drop |
1 | 45353 | SERVER-APACHE | Sling framework information disclosure attempt | off | off | drop |
GID | SID | Rule Group | Rule Message | Policy State | ||
---|---|---|---|---|---|---|
Con. | Bal. | Sec. | ||||
1 | 35779 | FILE-PDF | Adobe Reader XML XSL transform exploitation attempt | off | drop | drop |
1 | 35780 | FILE-PDF | Adobe Reader XML XSL transform exploitation attempt | off | drop | drop |
1 | 36225 | FILE-OTHER | Libgraphite empty feature list denial of service attempt | off | drop | drop |
1 | 36226 | FILE-OTHER | Libgraphite empty feature list denial of service attempt | off | drop | drop |
1 | 36227 | FILE-OTHER | Libgraphite empty feature list denial of service attempt | off | drop | drop |
1 | 36228 | FILE-OTHER | Libgraphite empty feature list denial of service attempt | off | drop | drop |
1 | 37454 | FILE-PDF | Adobe Acrobat CoolType malformed font memory corruption attempt | off | drop | drop |
1 | 37455 | FILE-PDF | Adobe Acrobat CoolType malformed font memory corruption attempt | off | drop | drop |
1 | 37458 | FILE-PDF | Adobe Acrobat CoolType font representation decoding memory corruption attempt | off | drop | drop |
1 | 37459 | FILE-PDF | Adobe Acrobat CoolType font representation decoding memory corruption attempt | off | drop | drop |
1 | 37469 | FILE-PDF | Adobe Acrobat Reader null pointer dereference attempt | off | drop | drop |
1 | 37470 | FILE-PDF | Adobe Acrobat Reader null pointer dereference attempt | off | drop | drop |
1 | 37530 | FILE-PDF | Adobe Acrobat Reader pdfshell preview mode - possible denial of service attempt | off | drop | drop |
1 | 37531 | FILE-PDF | Adobe Acrobat Reader pdfshell preview mode - possible denial of service attempt | off | drop | drop |
1 | 37532 | FILE-PDF | Adobe Acrobat Reader pdfshell preview mode - possible denial of service attempt | off | drop | drop |
1 | 37533 | FILE-PDF | Adobe Acrobat Reader pdfshell preview mode - possible denial of service attempt | off | drop | drop |
1 | 37655 | OS-WINDOWS | Microsoft .NET Framework XSLT parser stack exhaustion attempt | off | off | drop |
1 | 37656 | OS-WINDOWS | Microsoft .NET Framework XSLT parser stack exhaustion attempt | off | off | drop |
1 | 37793 | FILE-FLASH | Adobe Flash Player ActionScript 3 URLRequest class use after free attempt | off | drop | drop |
1 | 37794 | FILE-FLASH | Adobe Flash Player ActionScript 3 URLRequest class use after free attempt | off | drop | drop |
1 | 38458 | OS-WINDOWS | Microsoft Windows LSARPC LsapLookupSids denial of service attempt | off | drop | drop |
1 | 38462 | OS-WINDOWS | DCERPC Bind auth level packet privacy downgrade attempt | off | drop | drop |
1 | 38785 | FILE-OFFICE | Microsoft Office Excel BOF memory disclosure attempt | off | off | drop |
1 | 38786 | FILE-OFFICE | Microsoft Office Excel BOF memory disclosure attempt | off | off | drop |
1 | 38810 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38811 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38812 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38813 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38814 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38815 | FILE-OFFICE | Microsoft Office wwlib out of bounds memory access attempt | off | off | drop |
1 | 38839 | OS-WINDOWS | Microsoft Windows RPC NDR64 denial of service attempt | off | off | drop |
1 | 38840 | OS-WINDOWS | Microsoft Windows RPC NDR64 denial of service attempt | off | off | drop |
1 | 38849 | OS-WINDOWS | Kaspersky Internet Security KLIF driver denial of service attempt | off | drop | drop |
1 | 38850 | OS-WINDOWS | Kaspersky Internet Security KLIF driver denial of service attempt | off | drop | drop |
1 | 38975 | FILE-PDF | Adobe Reader clearGlobalSecurityStore information leak attempt | off | off | drop |
1 | 38976 | FILE-PDF | Adobe Reader clearGlobalSecurityStore information leak attempt | off | off | drop |
1 | 39078 | OS-WINDOWS | Kaspersky Internet Security KLIF driver denial of service attempt | off | drop | drop |
1 | 39079 | OS-WINDOWS | Kaspersky Internet Security KLIF driver denial of service attempt | off | drop | drop |
1 | 39466 | FILE-EXECUTABLE | Symantec Norton Security IDSvix86 out of bounds read attempt | off | off | drop |
1 | 39467 | FILE-EXECUTABLE | Symantec Norton Security IDSvix86 out of bounds read attempt | off | off | drop |
1 | 39506 | BROWSER-IE | Microsoft Edge ArrayBuffer.transfer information disclosure attempt | off | drop | drop |
1 | 39507 | BROWSER-IE | Microsoft Edge ArrayBuffer.transfer information disclosure attempt | off | drop | drop |
1 | 39831 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 39832 | FILE-OFFICE | Microsoft Office Word wwlib out of bounds read attempt | off | drop | drop |
1 | 39876 | PROTOCOL-SNMP | Allen-Bradley MicroLogix PLC SNMP request via undocumented community string attempt | off | drop | drop |
1 | 39889 | FILE-PDF | Adobe Acrobat invalid embedded font memory corruption attempt | off | off | drop |
1 | 39893 | OS-LINUX | Linux Kernel USBIP out of bounds write attempt | off | drop | drop |
1 | 39894 | OS-LINUX | Linux Kernel USBIP out of bounds write attempt | off | drop | drop |
1 | 40100 | BROWSER-IE | Microsoft Edge PDF PostScript calculator out of bounds read attempt | off | off | drop |
1 | 40101 | BROWSER-IE | Microsoft Edge PDF PostScript calculator out of bounds read attempt | off | off | drop |
1 | 40108 | BROWSER-IE | Microsoft Internet Explorer font element out of bounds read attempt | off | drop | drop |
1 | 40109 | BROWSER-IE | Microsoft Internet Explorer font element out of bounds read attempt | off | drop | drop |
1 | 40146 | BROWSER-IE | Microsoft Edge malformed response information disclosure attempt | off | off | drop |
1 | 40220 | SERVER-OTHER | Cisco IOS Group-Prime memory disclosure exfiltration attempt | off | drop | drop |
1 | 40221 | SERVER-OTHER | Cisco IOS Group-Prime MD5 memory disclosure attempt | off | drop | drop |
1 | 40222 | SERVER-OTHER | Cisco IOS Group-Prime SHA memory disclosure attempt | off | drop | drop |
1 | 40344 | PROTOCOL-DNS | ISC BIND isc__buffer_add assertion failure denial of service attempt | off | drop | drop |
1 | 40360 | SERVER-OTHER | OpenSSL OCSP Status Request Extension denial of service attempt | off | drop | drop |
1 | 40429 | FILE-PDF | Foxit PDF Reader JBIG2 parser out of bounds read attempt | off | off | drop |
1 | 40430 | FILE-PDF | Foxit PDF Reader JBIG2 parser out of bounds read attempt | off | off | drop |
1 | 40555 | OS-WINDOWS | Microsoft Windows AHCACHE.SYS remote denial of service attempt | off | drop | drop |
1 | 40556 | OS-WINDOWS | Microsoft Windows AHCACHE.SYS remote denial of service attempt | off | drop | drop |
1 | 40579 | SERVER-OTHER | ISC BIND 9 DNS query overly long name denial of service attempt | off | drop | drop |
1 | 40721 | BROWSER-IE | Microsoft Internet Explorer print preview information disclosure attempt | off | off | drop |
1 | 40722 | BROWSER-IE | Microsoft Internet Explorer print preview information disclosure attempt | off | off | drop |
1 | 40744 | FILE-FLASH | Adobe Primetime SDK setObject type confusion attempt | off | off | drop |
1 | 40745 | FILE-FLASH | Adobe Primetime SDK setObject type confusion attempt | off | off | drop |
1 | 40843 | SERVER-OTHER | OpenSSL SSLv3 warning denial of service attempt | off | drop | drop |
1 | 40855 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40856 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40857 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40858 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40859 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40860 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40861 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40862 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40863 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40864 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40897 | SERVER-OTHER | ntpd mrulist control message command null pointer dereference attempt | off | off | drop |
1 | 40936 | FILE-EXECUTABLE | Microsoft CLFS.sys information leak attempt | off | drop | drop |
1 | 40937 | FILE-EXECUTABLE | Microsoft CLFS.sys information leak attempt | off | drop | drop |
1 | 40975 | BROWSER-IE | Microsoft Edge iframe information disclosure attempt | off | drop | drop |
1 | 40976 | BROWSER-IE | Microsoft Edge iframe information disclosure attempt | off | drop | drop |
1 | 40992 | BROWSER-IE | Microsoft Internet Explorer information disclosure attempt | off | off | drop |
1 | 40993 | BROWSER-IE | Microsoft Internet Explorer information disclosure attempt | off | off | drop |
1 | 41080 | SERVER-OTHER | Tarantool xrow_header_decode out of bounds read attempt | off | off | drop |
1 | 41082 | SERVER-OTHER | Tarantool Msgpuck mp_check denial of service vulnerability attempt | off | off | drop |
1 | 41217 | OS-OTHER | Joyent SmartOS add entries denial of service attempt | off | drop | drop |
1 | 41218 | OS-OTHER | Joyent SmartOS add entries denial of service attempt | off | drop | drop |
1 | 41367 | SERVER-OTHER | NTPD zero origin timestamp denial of service attempt | off | drop | drop |
1 | 41677 | SERVER-WEBAPP | Trend Micro InterScan Web Security Appliance insecure configuration export attempt | off | off | drop |
1 | 45001 | SERVER-WEBAPP | Netgear WNR2000 information leak attempt | off | off | drop |
GID | SID | Rule Group | Rule Message | Policy State | ||
---|---|---|---|---|---|---|
Con. | Bal. | Sec. | ||||
1 | 1447 | POLICY-OTHER | Microsoft Windows Terminal server RDP attempt | off | off | off |
1 | 1448 | POLICY-OTHER | Microsoft Windows Terminal server request attempt | off | off | off |
1 | 5831 | DELETED | SPYWARE-PUT Hijacker comet systems runtime detection - update requests | off | off | off |