ÿÖÜÉý¼¶Í¨¸æ-2021-10-12
Ðû²¼Ê±¼ä 2021-10-13ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_À¶º£×¿Ô½¼Æ·ÑÖÎÀíϵͳ_debug.php_ÏÂÁîÖ´ÐÐÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | À¶º£×¿Ô½¼Æ·ÑÖÎÀíϵͳ/debug.php±£´æÎ´ÊÚȨ»á¼û£¬£¬£¬¸ÃÎļþÌṩһ¸öÏÂÁîÖ´ÐеĽӿڣ¬£¬£¬¹¥»÷¿Éͨ¹ýŲÓøýӿÚʵÏÖÔ¶³ÌÏÂÁîÖ´ÐС£¡£¡£ |
¸üÐÂʱ¼ä£º | 20211012 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Confluence/JIRA_í§ÒâÎļþ¶ÁÈ¡Îó²î[CVE-2021-26085/CVE-2021-26086][CNNVD-202108-1398] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | AtlassianConfluenceÊÇAtlassian¹«Ë¾³öÆ·µÄרҵµÄÆóҵ֪ʶÖÎÀíÓëÐͬÈí¼þ£¬£¬£¬¿ÉÓÃÓÚ¹¹½¨ÆóÒµÎÄ¿âµÈ¡£¡£¡£ConfluenceСÓÚ7.4.10£¬£¬£¬7.5.0~7.12.3°æ±¾£¬£¬£¬JiraСÓÚ8.5.14£¬£¬£¬8.6.0~8.13.6£¬£¬£¬8.14.0~8.16.1°æ±¾£¬£¬£¬¶¼±£´æí§ÒâÎļþ¶ÁÈ¡Îó²î¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚ¶ÔÓû§µÄÊäÈëûÓоÙÐÐÑÏ¿áµÄ¹ýÂ˵¼Ö£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚδÊÚȨµÄÇéÐÎÏ£¬£¬£¬½á¹¹¶ñÒâÊý¾ÝÖ´ÐÐÎļþ¶ÁÈ¡¹¥»÷£¬£¬£¬×îÖÕÔì³ÉЧÀÍÆ÷²¿·ÖÎļþÐÅϢй¶¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20211012 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ͨÓÃ_Ŀ¼´©Ô½Îó²î[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʵÑé¶ÔÄ¿µÄIPÖ÷»ú¾ÙÐÐĿ¼´©Ô½Îó²î¹¥»÷ʵÑéµÄÐÐΪ¡£¡£¡£Ä¿Â¼´©Ô½Îó²îÄÜʹ¹¥»÷ÕßÈÆ¹ýWebЧÀÍÆ÷µÄ»á¼ûÏÞÖÆ£¬£¬£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬£¬£¬í§ÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£¡£¡£´Ë¹æÔòÊÇÒ»ÌõͨÓùæÔò£¬£¬£¬ÆäËûÎó²î£¨ÉõÖÁһЩ0dayÎó²î£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´ËÊÂÎñ±¨¾¯¡£¡£¡£ÓÉÓÚÕý³£ÓªÒµÖÐÒ»Ñùƽ³£²»»á±¬·¢´ËÊÂÎñÌØÕ÷µÄÁ÷Á¿£¬£¬£¬ÒÔÊÇÐèÒªÖØµã¹Ø×¢¡£¡£¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß»á¼ûÃô¸ÐÎļþ¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20211012 |