version 1.3.2 build 4 2007/01/17 Fixed apache 2.4 dummy requests exclusion Added persistent PDF UXSS detection rule Vervion 1.3.2 build 3 2007/01/10 Fixed regular expresion in rule 960010 (file #30) to allow mulipart-data content Version 1.3.2 - 2006/12/27 New events: - 960037 Directory is restricted by policy - 960038 HTTP header is restricted by policy Regular expressions fixes: - Regular expressions with @ at end of beginning (for example "@import) - Regular expressions with un-escaped "." - Command Injections now always require certain characters both before and after the command. Important since many are common English words (finger, mail) - The command injection wget is not searched in the UA header as it has different meaning there. - LDAP Fixed to reduce FPs: + More accurate regular expressions + high bit characters not accpeted between signature tokens. - Do not detect