If you have an MX100 then go to "Security & SD WAN" then "threat protection". Under "Intrusion detection and prevention", add a rule and search for "1:60381". Save changes. You should read the Microsoft CVE and snort rule before doing this, so you can determine whether your environment is actually vulnerable to this exploit. https://msrc.microsoft.com/update-guide/en-us/vulnerability/CVE-2022-35748 https://snort.org/rule_docs/1-60381
... View more