Apache AxisÔ¶³Ì´úÂëÖ´ÐÐ0dayÎó²î´¦Öóͷ£½¨Òé

Ðû²¼Ê±¼ä 2019-06-19

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºÔÝÎÞ£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾

ÊÊÓÃÓÚApache Axis <= 1.4°æ±¾£¬£¬£¬Axis ÔÊÐíÔ¶³ÌÖÎÀí£¬£¬£¬Ê¹Óà Freemarker ²å¼þµÄÇéÐÎϱ£´æÎó²î¡£¡£¡£¡£¡£¡£¡£


Ó°Ïì¹æÄ£


Ó°Ïì¹æÄ£½ÏС£¡£¡£¡£¡£¡£¡£¬£¬£¬º£ÄÚ̻¶ÔÚ¹«ÍøµÄAxis£¬£¬£¬²»µ½80¸öip¡£¡£¡£¡£¡£¡£¡£


Îó²î¸ÅÊö


Apache AxisÊÇÃÀ¹ú°¢ÅÁÆæ£¨Apache£©Èí¼þ»ù½ð»áµÄÒ»¸ö¿ªÔ´¡¢»ùÓÚXMLµÄWebЧÀͼܹ¹¡£¡£¡£¡£¡£¡£¡£¸Ã²úÆ·°üÀ¨ÁËJavaºÍC++ÓïÑÔʵÏÖµÄSOAPЧÀÍÆ÷£¬£¬£¬ÒÔ¼°ÖÖÖÖ¹«ÓÃЧÀͼ°API£¬£¬£¬ÒÔÌìÉúºÍ°²ÅÅWebЧÀÍÓ¦Óᣡ£¡£¡£¡£¡£¡£


Apache AxisÖб£´æÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¬£¬£¬¹¥»÷Õß¿Éͨ¹ý·¢ËÍÈ«ÐĽṹµÄ¶ñÒâ HTTP-POST ÇëÇ󣬣¬£¬»ñµÃÄ¿µÄЧÀÍÆ÷ȨÏÞ£¬£¬£¬ÔÚδÊÚȨÇéÐÎÏÂÔ¶³ÌÖ´ÐÐÏÂÁî¡£¡£¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£¡£¡£


ÐÞ¸´½¨Òé


¹Ù·½ÔÝδÐû²¼Õë¶Ô´ËÎó²îµÄÐÞ¸´²¹¶¡£¡£¡£¡£¡£¡£¡£¬£¬£¬ÔÚ¹Ù·½ÐÞ¸´Ö®Ç°£¬£¬£¬¿ÉÒÔ½ÓÄÉÒÔÏ·½·¨¾ÙÐÐÔÝʱ·À»¤£º


1¡¢É¾³ýAxis

ÈôÊÇÄ¿½ñϵͳ²»ÐèҪʹÓÃAxisµÄ¹¦Ð§£¬£¬£¬¿ÉÔÚlibĿ¼ÏÂÕÒµ½axis.jarÎļþ£¬£¬£¬½«Æäɾ³ý¡£¡£¡£¡£¡£¡£¡£ÔÚÖ´ÐÐɾ³ý²Ù×÷ǰÇë¶ÔÎļþ×öºÃ±¸·Ý£¬£¬£¬±ÜÃâÒòɾ³ýÎļþµ¼ÖµÄÓªÒµÖÐÖ¹¡£¡£¡£¡£¡£¡£¡£


2¡¢½ûÓÃAxisÔ¶³ÌÖÎÀí
µ½ÍøÕ¾Ä¿Â¼ÏÂÕÒµ½server-config.wsddÎļþ£¬£¬£¬ÓÃÎı¾±à¼­Æ÷·­¿ª£¬£¬£¬ÕÒµ½enableRemoteAdminÉèÖÃÏ£¬£¬½«ÖµÉèÖÃΪfalse£¬£¬£¬ÈçͼËùʾ£º

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨