Netskope Threat Labs

FILE-OFFICE PPSX WSDL file download attempt

IPS-CFW

1 SID: 200125

Detects a presentation exploiting CVE-2017-8759, the .NET SOAP parser flaw reached through embedded web service references that can allow code execution. The rule matches the relationship entries pointing at operator-controlled service definitions.