From 5462b726cf5e9597b4ca6f3ac07c7f864a385e5c Mon Sep 17 00:00:00 2001 From: Caleb Mazalevskis Date: Wed, 30 Oct 2024 12:32:17 +0800 Subject: [PATCH] Extras module update. --- modules/module_extras.php | 9 ++++++--- modules/modules.dat | 4 ++-- 2 files changed, 8 insertions(+), 5 deletions(-) diff --git a/modules/module_extras.php b/modules/module_extras.php index 7f270b3..5d97d85 100644 --- a/modules/module_extras.php +++ b/modules/module_extras.php @@ -8,7 +8,7 @@ * License: GNU/GPLv2 * @see LICENSE.txt * - * This file: Optional security extras module (last modified: 2024.09.05). + * This file: Optional security extras module (last modified: 2024.10.30). * * False positive risk (an approximate, rough estimate only): « [ ]Low [x]Medium [ ]High » */ @@ -140,9 +140,12 @@ } // 2023.08.18 mod 2024.08.04 /** Probing for vulnerable plugins or webapps. */ - if ($Trigger(preg_match('~/dup-installer/main\.installer\.php[57]?(?:$|[/?])~', $LCNrURI), $Exploit = 'CVE-2022-2551')) { + if ( + $Trigger(preg_match('~/dup-installer/main\.installer\.php[57]?(?:$|[/?])~', $LCNrURI), $Exploit = 'CVE-2022-2551') || // 2024.09.05 + $Trigger(preg_match('~/Telerik\.Web\.UI\.WebResource\.axd(?:$|[/?])~i', $LCNrURI), $Exploit = 'CVE-2019-18935') // 2024.10.30 + ) { $CIDRAM['Reporter']->report([15, 21], ['Caught probing for ' . $Exploit . ' vulnerability.'], $CIDRAM['BlockInfo']['IPAddr']); - } // 2024.09.05 + } /** Probing for webshells/backdoors. */ if ($Trigger(preg_match( diff --git a/modules/modules.dat b/modules/modules.dat index e6be183..a53e1cf 100644 --- a/modules/modules.dat +++ b/modules/modules.dat @@ -239,7 +239,7 @@ module_cookies.php: module_extras.php: Name: "Optional security extras module" False Positive Risk: "Medium" - Version: "2024.248.0" + Version: "2024.303.0" Dependencies: PHP: "^5.4|^7|^8" CIDRAM Core: "^1.13.1|^2.0.1" @@ -254,7 +254,7 @@ module_extras.php: - "module_extras.php" - "module_extras.yaml" Checksum: - - "9646163293a81a8a7008a4ee48b51edf8ecd4b51b5ccccc4f145efa0379aa0b9:28453" + - "11d7c968fc19f82aebd98f30d708793181f4e6450d7c0d039f32413a298c6f45:28616" - "7b891d1fa4b1c52c410220bc758e8cb7064bd6040430fb149a5b60e9ae2e0838:890" Used with: "modules" Reannotate: "modules.dat"