2021-01-19

Ðû²¼Ê±¼ä 2021-01-19

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_ÅþÁ¬¿ó³ØÀÖ³É

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½µ½ÍÚ¿óľÂíCPUMinerÅþÁ¬¿ó³ØÀֳɵÄÐÐΪ¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerľÂí¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Netis_WF2419_²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î[CVE-2019-19356][CNNVD-202002-238]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ʹÓÃV1.2.31805ºÍV2.2.36123°æ±¾¹Ì¼þµÄNetisWF2419Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ZendFramework_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2021-3007][CNNVD-202101-025]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZENDZendFramework£¨ZF£©ÊÇÃÀ¹úZend£¨ZEND£©¹«Ë¾µÄÒ»Ì׿ªÔ´µÄPHP¿ª·¢¿ò¼Ü£¬£¬£¬£¬ËüÖ÷ÒªÓÃÓÚ¿ª·¢Web³ÌÐòºÍЧÀÍ¡£¡£¡£¡£¡£ZendFramework3.0.0°æ±¾±£´æÇå¾²Îó²î£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚÓÐÒ»¸ö·´ÐòÁл¯Îó²î£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_ÎļþÉÏ´«_Apache_Flinkí§ÒâÎļþÉÏ´«Îó²î[CVE-2020-17518][CNNVD-202101-273]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache_Flink1.5.1¾ÙÐÐí§ÒâÎļþÉÏ´«;ApacheFlinkÊǾßÓÐǿʢµÄÁ÷ºÍÅú´¦Öóͷ£¹¦Ð§µÄ¿ªÔ´Á÷´¦Öóͷ£¿ò¼Ü¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Technicolor_TD5130_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-18396][CVE-2019-18396][CNNVD-201910-1908]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

TechnicolorTD5130v2ÊÇ·¨¹úÌØÒÕ£¨Technicolor£©¹«Ë¾µÄÒ»¿îµ÷ÖÆ½âµ÷Æ÷¡£¡£¡£¡£¡£TechnicolorTD5130v2ÖеÄOiµÚÈý·½¹Ì¼þµÄPingÄ£¿£¿£¿£¿£¿£¿£¿é±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâÔªËØ£¬£¬£¬£¬µ¼Ö¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨ÏÂÁî¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Schneider_Electric_U.Motion_BuilderÏÂÁî×¢ÈëÎó²î[CVE-2018-7841][CNNVD-201905-612]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

SchneiderElectricU.MotionBuilderÊÇ·¨¹úÊ©ÄÍµÂµçÆø£¨SchneiderElectric£©¹«Ë¾µÄÒ»Ì×ÐÞ½¨ÎïÖÇÄÜÖÎÀíϵͳ¡£¡£¡£¡£¡£SchneiderElectricU.MotionBuilder1.3.4¼°Ö®Ç°°æ±¾ÖеÄtrack_import_export.php¾ç±¾Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£ZabbixÊÇÒ»¸ö¿ªÔ´µÄÆóÒµ¼¶ÐÔÄÜ¼à¿Ø½â¾ö¼Æ»®¡£¡£¡£¡£¡£Zabbix°æ±¾2.2-3.0.3±£´æZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î£¬£¬£¬£¬¹¥»÷ÕßʹÓôËÎó²îÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐϵͳÏÂÁî¡£¡£¡£¡£¡£ÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_IBM_WebSphere_Java·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2015-7450]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

WebSphereÊÇIBM¹«Ë¾¿ª·¢µÄÖÐÐļþ»ù´¡Éèʩƽ̨¡£¡£¡£¡£¡£WebSphere7°æ±¾ÔÚ¿ª·¢ÖÐʹÓÃÁËApacheCommonsCollections¿âÖеÄInvokerTransformerÀ࣬£¬£¬£¬¸ÃÀà±£´æJava·´ÐòÁл¯Îó²î¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃNETGEAR_DGN2200_v1v2v3v4_Ô¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬£¬£¬£¬ÊÔͼͨ¹ýÔ¶³Ì´úÂëÖ´ÐÐÎó²îÈëÇÖNETGEAR·ÓÉÆ÷£¬£¬£¬£¬¿ÉÒÔÖ´ÐÐí§ÒâÏÂÁî»ñµÃ·ÓÉÆ÷µÄ¿ØÖÆÈ¨¡£¡£¡£¡£¡£NETGEAR_DGN2200ÊÇÒ»¿î³£ÓõÄÎÞÏß·ÓÉÆ÷×°±¸¡£¡£¡£¡£¡£NETGEAR_DGN2200·ÓÉÆ÷µÄv1/v2/v3/v4°æ±¾±£´ædnslookup.cgiÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£Ä¿½ñ·ÓÉÆ÷¹Ì¼þΪÕâЩ°æ±¾Ê±±£´æ¸ÃÎó²î£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý×Ô¶¯»¯¾ç±¾¹¥»÷ÍøÂçÖеÄ·ÓÉÆ÷×°±¸£¬£¬£¬£¬Ö´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£ÊµÑéÔÚÄ¿µÄ·ÓÉÆ÷×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬¿ØÖÆÄ¿µÄ·ÓÉÆ÷ÍøÂç¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-3920][CNNVD-201903-080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¹¥»÷Àֳɣ¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Liferay_Portal_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-7961][CNNVD-202003-1260]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

LiferayÊÇÒ»¸ö¿ªÔ´µÄPortal(ÈÏÖ¤)²úÆ·,Ìṩ¶Ô¶à¸ö×ÔÁ¦ÏµÍ³µÄÄÚÈݼ¯³É,ΪÆóÒµÐÅÏ¢¡¢Á÷³ÌµÈµÄÕûºÏÌṩÁËÒ»Ì×ÍêÕûµÄ½â¾ö¼Æ»®,ºÍÆäËûÉÌÒµ²úÆ·Ïà±È,LiferayÓÐ×ÅÐí¶àÓÅÁ¼µÄÌØÕ÷,²¢ÇÒÃâ·Ñ,ÔÚÈ«Çò¶¼Óн϶àÓû§¡£¡£¡£¡£¡£ÔÚLiferay6.1.x-7.2.x°æ±¾Öб£´æÍ¨¹ýδÊÚȨ»á¼ûµÄapi½á¹¹jsonÓï¾äµ¼Ö·´ÐòÁл¯Îó²î½ø¶øÖ´Ðй¥»÷Õß´úÂëÏÂÁîµÄÎó²î¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_ajaxaction_ÎļþÉÏ´«Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÖÂÔ¶OAÊÇÒ»Ìװ칫ЭͬÈí¼þ¡£¡£¡£¡£¡£¿ËÈÕ£¬£¬£¬£¬°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐÄ¼à¿Øµ½ÖÂÔ¶OAajaxActionÎļþÉÏ´«Îó²îʹÓôúÂëÅû¶¡£¡£¡£¡£¡£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©ajax½Ó¿Ú±£´æÎ´ÊÚȨ»á¼û£¬£¬£¬£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬣¬£¬£¬¿ÉÔÚÎÞÐèµÇ¼µÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬£¬£¬£¬´Ó¶ø¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£ÖÂÔ¶OA¹Ù·½ÒÑÕë¶Ô¸ÃÎó²îÌṩ²¹¶¡£¡£¡£¡£¡£¬£¬£¬£¬¸ÃÎó²îʹÓôúÂëÒÑÔÚ»¥ÁªÍøÉϹûÕæÈö²¥¡£¡£¡£¡£¡£°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐÄÌáÐÑÖÂÔ¶OAÓû§¾¡¿ì½ÓÄÉÇå¾²²½·¥×èÖ¹Îó²î¹¥»÷¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_δÊÚȨ»á¼û

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÖÂÔ¶OAA8ÊÇÒ»¿îÊ¢ÐеÄЭͬÖÎÀíÈí¼þ£¬£¬£¬£¬ÔÚ¸÷ÖС¢´óÐÍÆóÒµ»ú¹¹ÖÐÆÕ±éʹÓᣡ£¡£¡£¡£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©½Ó¿ÚÄܱ»Î´ÊÚȨ»á¼û£¬£¬£¬£¬²¢ÇÒ²¿·Öº¯Êý±£´æ¹ýÂËȱ·¦£¬£¬£¬£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬣¬£¬£¬¿ÉÔÚδÊÚȨµÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬£¬£¬£¬´Ó¶ø¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119