2020-07-21

Ðû²¼Ê±¼ä 2020-07-22

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Laravel_Framework_·´ÐòÁл¯Îó²î[CVE-2019-9081]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃLaravel Framework ·´ÐòÁл¯Îó²î¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£Laravel FrameworkÊÇTaylor OtwellÈí¼þ¿ª·¢Õß¿ª·¢µÄÒ»¿î»ùÓÚPHPµÄWebÓ¦ÓóÌÐò¿ª·¢¿ò¼Ü¡£¡£¡£IlluminateÊÇÆäÖеÄÒ»¸ö×é¼þ¡£¡£¡£Laravel Framework 5.7.x°æ±¾ÖеÄIlluminate×é¼þ±£´æ·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´ÐдúÂë¡£¡£¡£

¸üÐÂʱ¼ä£º

20200721










ÊÂÎñÃû³Æ£º

DNS_Çå¾²Îó²î_Microsoft_DNS_Server_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-1350]

Çå¾²ÀàÐÍ£º

»º³åÒç³ö

ÊÂÎñÐÎò£º

Windows DNS Server ÊÇ Windows Server ЧÀÍÆ÷ÉÏÒ»ÏîÖ÷Òª¹¦Ð§×é¼þ£¬£¬£¬£¬£¬ÈÏÕæÓòÄÚÖ÷»úµÄËùÓÐDNSÏà¹ØÐ§À͵ĵ÷ÀíºÍ´¦Öóͷ£¡£¡£¡£Windows DNS ServerÎÞ·¨×¼È·´¦Öóͷ£SIGÇëÇ󣬣¬£¬£¬£¬Ô¶³Ì¹¥»÷Õ߿ɲ»¾­ÓÉÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬ÏòÊÜÓ°ÏìµÄЧÀÍÆ÷·¢ËÍÌØÖÆµÄÇëÇó°ü£¬£¬£¬£¬£¬×îÖÕ´¥·¢¸ÃÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚÊÜÓ°ÏìµÄϵͳÉÏÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬£¬½ø¶ø¿ØÖÆÆäËûÏàÁ¬Í¨µÄЧÀÍÔì³ÉÑÏÖØÎ£º¦¡£¡£¡£

¸üÐÂʱ¼ä£º

20200721











ÊÂÎñÃû³Æ£º

TCP_Fastjson_JSON·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

FastjsonÊÇÒ»¸öJava¿â£¬£¬£¬£¬£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSONÃûÌ㬣¬£¬£¬£¬fastjson±£´æÔ¶³Ì´úÂëÖ´ÐиßΣÇå¾²Îó²î¡£¡£¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸öÈ«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬£¬£¬£¬£¬µ±³ÌÐòÖ´ÐÐJSON·´ÐòÁл¯µÄÀú³ÌÖÐÖ´ÐжñÒâ´úÂ룬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£

¸üÐÂʱ¼ä£º

20200721









ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Jenkins_Groovy²å¼þshellÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃjavaÃô¸Ðº¯Êýexcute,Ö´ÐÐÀֳɿÉÄÜ»áÔì³ÉÏÂÁîÖ´ÐС£¡£¡£

¸üÐÂʱ¼ä£º

20200721







ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_ÉÏ´«ÍÚ¿ó״̬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

Lucifer/Satan_DDosÊÇÒ»¸ö»ìÏýÐÍľÂí£¬£¬£¬£¬£¬¼È¿ÉÒÔ¾ÙÐÐÍڿ󣬣¬£¬£¬£¬ÓÖÄܹ»¾ÙÐÐDDOS¹¥»÷£¬£¬£¬£¬£¬²¢ÇÒ»¹Äܹ»Í¨¹ýʹÓöà¸öÎó²îºÍMSSQL±©Á¦ÆÆ½âÀ´¾ÙÐÐ×ÔÎÒÈö²¥¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿µÄÊͷŲ¢ÔËÐÐEternalBlue£¬£¬£¬£¬£¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¡£¡£¸ÃľÂíʹÓõÄÎó²îÇåµ¥°üÀ¨£ºCVE-2014-6287£¬£¬£¬£¬£¬CVE-2018-1000861£¬£¬£¬£¬£¬CVE-2017-10271£¬£¬£¬£¬£¬ThinkPHP RCEÎó²î£¨CVE-2018-20062£©£¬£¬£¬£¬£¬CVE-2018-7600£¬£¬£¬£¬£¬CVE-2017-9791£¬£¬£¬£¬£¬CVE-2019-9081£¬£¬£¬£¬£¬PHPStudyºóÃÅRCE£¬£¬£¬£¬£¬CVE-2017-0144£¬£¬£¬£¬£¬CVE-2017-0145ºÍCVE-2017-8464¡£¡£¡£¸ÃÊÂÎñÅú×¢ÍÚ¿ó³ÌÐòÕýÔÚÉÏ´«ÍÚ¿ó״̬ÐÅÏ¢¡£¡£¡£

¸üÐÂʱ¼ä£º

20200721














ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓûìÏýÐÍľÂíLucifer/Satan_DDosÅþÁ¬Ð§ÀÍÆ÷µÄÐÐΪ¡£¡£¡£Lucifer/Satan_DDosÊÇÒ»¸ö»ìÏýÐÍľÂí£¬£¬£¬£¬£¬¼È¿ÉÒÔ¾ÙÐÐÍڿ󣬣¬£¬£¬£¬ÓÖÄܹ»¾ÙÐÐDDOS¹¥»÷£¬£¬£¬£¬£¬²¢ÇÒ»¹Äܹ»Í¨¹ýʹÓöà¸öÎó²îºÍMSSQL±©Á¦ÆÆ½âÀ´¾ÙÐÐ×ÔÎÒÈö²¥¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿µÄÊͷŲ¢ÔËÐÐEternalBlue£¬£¬£¬£¬£¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¡£¡£¸ÃľÂíʹÓõÄÎó²îÇåµ¥°üÀ¨£ºCVE-2014-6287£¬£¬£¬£¬£¬CVE-2018-1000861£¬£¬£¬£¬£¬CVE-2017-10271£¬£¬£¬£¬£¬ThinkPHP RCEÎó²î£¨CVE-2018-20062£©£¬£¬£¬£¬£¬CVE-2018-7600£¬£¬£¬£¬£¬CVE-2017-9791£¬£¬£¬£¬£¬CVE-2019-9081£¬£¬£¬£¬£¬PHPStudyºóÃÅRCE£¬£¬£¬£¬£¬CVE-2017-0144£¬£¬£¬£¬£¬CVE-2017-0145ºÍCVE-2017-8464¡£¡£¡£

¸üÐÂʱ¼ä£º

20200721















ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_ʵÑéÅþÁ¬¿ó³Ø

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£¡£¡£

¸üÐÂʱ¼ä£º

20200721