2019-10-16
Ðû²¼Ê±¼ä 2019-10-17ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º |
HTTP_WebLogic_XXE×¢ÈëÎó²î[CVE-2019-2887] |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
×¢Èë¹¥»÷ |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃWebLogic_XXE×¢ÈëÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20191016 |
ĬÈÏÐж¯£º |
¶ª»á»° |
ÊÂÎñÃû³Æ£º |
TCP_Oracle_WebLogic_·´ÐòÁл¯Îó²î[CVE-2019-2890] |
ÊÂÎñ¼¶±ð£º |
Öм¶ÊÂÎñ |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogic·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬ÊÔͼͨ¹ý´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£ WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÓ¦ÓóÌÐòЧÀÍÆ÷£¬£¬£¬£¬£¬£¬ÊÇÒ»¸ö»ùÓÚJava EE¼Ü¹¹µÄWebÖÐÐļþ¡£¡£¡£¡£¡£¡£WebLogic±£´æJava·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐиßΣÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸öÈ«ÐĽṹµÄJavaÐòÁл¯¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬µ±WebLogicÖ´ÐÐJava·´ÐòÁл¯µÄÀú³ÌÖÐÖ´ÐжñÒâ´úÂ룬£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£¡£ÓÉÓÚWebLogicÐÞ¸´Îó²î½ÓÄÉÁ˺ÚÃûµ¥¹ýÂË»úÖÆ£¬£¬£¬£¬£¬£¬ÓÐʱ¼ä¿ÉÄܵ¼ÖÂÎó²îÐÞ¸´²»³¹µ×еķ´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²îƵ·¢£¬£¬£¬£¬£¬£¬Òò´ËÇëÇ×½ü¹Ø×¢Oracle¹Ù·½Ðû²¼µÄÎó²î²¹¶¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬ÊµÊ±¾ÙÐв¹¶¡¸üÐÂÒÔÈ·±£Ð§ÀÍÆ÷Çå¾²¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20191016 |
ĬÈÏÐж¯£º |
¶ª»á»° |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º
HTTP_ºóÃÅ_phpStudy¹¥»÷ʵÑé_ÅþÁ¬
ÊÂÎñ¼¶±ð£º
Öм¶ÊÂÎñ
Çå¾²ÀàÐÍ£º
ľÂíºóºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½¹¥»÷ÕßÔÚÏòʹÓÃphpStudyµÄÍøÕ¾·¢ËÍÌØ¶¨Ãü¾Ý£¬£¬£¬£¬£¬£¬ÒÔ´¥·¢¶ñÒâºóÃŹ¦Ð§¡£¡£¡£¡£¡£¡£
ÖøÃûµÄPHPµ÷ÊÔÇéÐγÌÐò¼¯³É°üphpStudyÈí¼þ±»¸Ä¶¯Ö²ÈëÁ˺óÃÅ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÌæ»»ÁËphp_xmlrpc.dllʵÏÖºóÃÅ´úÂëµÄÖ²ÈëºÍפÁô¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÏòʹÓÃÁ˱»¸Ä¶¯µÄphpStudyµÄÍøÕ¾·¢ËÍÌØ¶¨Ãü¾Ý£¬£¬£¬£¬£¬£¬¼´¿É´¥·¢ºóÃÅÖ´ÐС£¡£¡£¡£¡£¡£ºóÃŹ¦Ð§Ö÷ÒªÎªÍøÂçÓû§ÐÅÏ¢¡¢Ö´ÐÐC£¦C¶Ë¹¥»÷ÕßÏ·¢µÄÔ¶³ÌPHP¾ç±¾¡£¡£¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20191016
ĬÈÏÐж¯£º
ͨ¹ý