<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Issue with the vulnerability logs. in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/issue-with-the-vulnerability-logs/m-p/443442#M100222</link>
    <description>&lt;P&gt;We have noticed some vulnerability logs in our PA for the Telerik application in our environment.&lt;/P&gt;&lt;P&gt;the threat vault id is 59014 but according to the link. &lt;A href="https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fthreatvault.paloaltonetworks.com%2F%3Fquery%3D59014&amp;amp;data=04%7C01%7Csupport%40starlinkme.net%7Ca5b3d761a6e2458f734508d99222ae28%7Cf59fc278b75a4bf4879bbb6911a66683%7C0%7C0%7C637701499959619194%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;amp;sdata=66X4d%2B7xdm2XrdtBGBNiEWq%2FkzvMcaVPctaRAnM7Jh0%3D&amp;amp;reserved=0" target="_blank"&gt;https://threatvault.paloaltonetworks.com/?query=59014&lt;/A&gt;).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;A href="https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.telerik.com%2Fsupport%2Fkb%2Faspnet-ajax%2Fdetails%2Fallows-javascriptserializer-deserialization&amp;amp;data=04%7C01%7Csupport%40starlinkme.net%7Ca5b3d761a6e2458f734508d99222ae28%7Cf59fc278b75a4bf4879bbb6911a66683%7C0%7C0%7C637701499959619194%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;amp;sdata=KnrORWWgWKQPpmqBIS%2FvFVTB3%2BCwW2VDBgVvHphkwq8%3D&amp;amp;reserved=0" target="_blank"&gt;https://www.telerik.com/support/kb/aspnet-ajax/details/allows-javascriptserializer-deserialization&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To fix this vulnerability we need to upgrade the Telerik version &lt;EM&gt;&lt;STRONG&gt;2020.1.114&lt;/STRONG&gt;&lt;/EM&gt; but my current version is more than this &lt;EM&gt;&lt;STRONG&gt;2020.3.915&lt;/STRONG&gt;&lt;/EM&gt; it means this is non-vulnerable.&lt;/P&gt;&lt;P&gt;The issue is that I am getting vulnerability logs continuously. however, this is already fixed according to the PA KB.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jafar_Hussain_0-1635255328006.jpeg" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37246i39DC1FD14FB91E45/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Jafar_Hussain_0-1635255328006.jpeg" alt="Jafar_Hussain_0-1635255328006.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can anyone guide me, what is the solution for this?&lt;/P&gt;&lt;P&gt;please note that I don't want to enable the exception for this thread id 59014.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 26 Oct 2021 13:38:59 GMT</pubDate>
    <dc:creator>Jafar_Hussain</dc:creator>
    <dc:date>2021-10-26T13:38:59Z</dc:date>
    <item>
      <title>Issue with the vulnerability logs.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/issue-with-the-vulnerability-logs/m-p/443442#M100222</link>
      <description>&lt;P&gt;We have noticed some vulnerability logs in our PA for the Telerik application in our environment.&lt;/P&gt;&lt;P&gt;the threat vault id is 59014 but according to the link. &lt;A href="https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fthreatvault.paloaltonetworks.com%2F%3Fquery%3D59014&amp;amp;data=04%7C01%7Csupport%40starlinkme.net%7Ca5b3d761a6e2458f734508d99222ae28%7Cf59fc278b75a4bf4879bbb6911a66683%7C0%7C0%7C637701499959619194%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;amp;sdata=66X4d%2B7xdm2XrdtBGBNiEWq%2FkzvMcaVPctaRAnM7Jh0%3D&amp;amp;reserved=0" target="_blank"&gt;https://threatvault.paloaltonetworks.com/?query=59014&lt;/A&gt;).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;A href="https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.telerik.com%2Fsupport%2Fkb%2Faspnet-ajax%2Fdetails%2Fallows-javascriptserializer-deserialization&amp;amp;data=04%7C01%7Csupport%40starlinkme.net%7Ca5b3d761a6e2458f734508d99222ae28%7Cf59fc278b75a4bf4879bbb6911a66683%7C0%7C0%7C637701499959619194%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;amp;sdata=KnrORWWgWKQPpmqBIS%2FvFVTB3%2BCwW2VDBgVvHphkwq8%3D&amp;amp;reserved=0" target="_blank"&gt;https://www.telerik.com/support/kb/aspnet-ajax/details/allows-javascriptserializer-deserialization&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To fix this vulnerability we need to upgrade the Telerik version &lt;EM&gt;&lt;STRONG&gt;2020.1.114&lt;/STRONG&gt;&lt;/EM&gt; but my current version is more than this &lt;EM&gt;&lt;STRONG&gt;2020.3.915&lt;/STRONG&gt;&lt;/EM&gt; it means this is non-vulnerable.&lt;/P&gt;&lt;P&gt;The issue is that I am getting vulnerability logs continuously. however, this is already fixed according to the PA KB.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jafar_Hussain_0-1635255328006.jpeg" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/37246i39DC1FD14FB91E45/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Jafar_Hussain_0-1635255328006.jpeg" alt="Jafar_Hussain_0-1635255328006.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can anyone guide me, what is the solution for this?&lt;/P&gt;&lt;P&gt;please note that I don't want to enable the exception for this thread id 59014.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Oct 2021 13:38:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/issue-with-the-vulnerability-logs/m-p/443442#M100222</guid>
      <dc:creator>Jafar_Hussain</dc:creator>
      <dc:date>2021-10-26T13:38:59Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with the vulnerability logs.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/issue-with-the-vulnerability-logs/m-p/443642#M100241</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/124013"&gt;@Jafar_Hussain&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;You could reach out to TAC and let them know that this threat-id signature may be a false positive, but keep in mind that just because the vulnerability isn't applicable to your environment doesn't mean that you can't see exploit attempts. Are you sure that what you are seeing is actually a false positive and not someone actively trying to exploit the vulnerability that you may already have patched?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Oct 2021 01:22:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/issue-with-the-vulnerability-logs/m-p/443642#M100241</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2021-10-27T01:22:59Z</dc:date>
    </item>
  </channel>
</rss>

