¶à¸öÄÚÈÝÖÎÀíϵͳí§Òâ´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-05-10Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-11831£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º9.8
Drupal£ºDrupal 8.7£¬£¬£¬£¬£¬£¬Drupal 8.6¼°Ö®Ç°°æ±¾£¬£¬£¬£¬£¬£¬Drupal 7
Joomla£ºJoomla 3.9.3 µ½ 3.9.5
TYPO3£º2.0.0-2.1.0 ºÍ 3.0.0-3.1.0
Îó²î¸ÅÊö
¶à¸öÄÚÈÝÖÎÀíϵͳ°üÀ¨Drupal£¬£¬£¬£¬£¬£¬JoomlaºÍTypo3±£´æí§Òâ´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚPHPÇý¶¯ÏîÄ¿ÖÐʹÓõÄpharÁ÷°ü×°Æ÷×é¼þÖС£¡£¡£¡£¡£¡£Phar´æµµÓÃÓÚÔÚµ¥¸öÎļþÖзַ¢ÍêÕûµÄPHPÓ¦ÓóÌÐò»ò¿â¡£¡£¡£¡£¡£¡£
pharÁ÷°ü×°Æ÷ÊÇTypo3ÌṩµÄÒ»¸ö¿ªÔ´×é¼þ£¬£¬£¬£¬£¬£¬ËüÔÊÐíÓû§¼ì²é¸ÃÎļþÊÇ·ñÊÇ´ÓÌØ¶¨Ä¿Â¼¼ÓÔØµÄ¾ßÓÐ׼ȷÎļþÀ©Õ¹ÃûµÄÓÐÓÃPharÎļþ£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÈÆ¹ýΪpharÁ÷°ü×°Æ÷ÌṩµÄ±£»£»£»£»£»¤£¬£¬£¬£¬£¬£¬²¢×îÖÕÌᳫí§Òâ´úÂëÖ´Ðй¥»÷¡£¡£¡£¡£¡£¡£
Îó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£¡£
ÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£º
Joomla£ºÉý¼¶µ½Joomla 3.9.6
TYPO3£ºÉý¼¶µ½2.1.1 (for PHP v5.3 and later)ºÍ3.1.1 (for PHP v7.0 and later)
²Î¿¼Á´½Ó
https://developer.joomla.org/security-centre.html
https://typo3.org/security/advisory/typo3-psa-2019-007/