ÿÖÜÉý¼¶Í¨¸æ-2022-08-09
Ðû²¼Ê±¼ä 2022-08-09
ÊÂÎñÃû³Æ£º | HTTP_Microsoft-Exchange-SERVER_ЧÀÍÆ÷¶ËÇëÇóαÔì[CVE-2021-26855] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | Ä¿½ñÖ÷»úÕýÔÚÔâÊÜMicrosoft-Exchange-SERVER_ЧÀÍÆ÷¶ËÇëÇóαÔì¹¥»÷ |
¸üÐÂʱ¼ä£º | 20220809 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_ľÂíºóÃÅ_vbs_webshell_Ò»¾ä»°Ä¾Âí |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÏòÄ¿µÄÖ÷»úÉÏ´«VBSÒ»¾ä»°Ä¾ÂíµÄÐÐΪ¹¥»÷ÕßʵÑéÏòЧÀÍÆ÷ÉÏ´«VBSÒ»¾ä»°Ä¾ÂíÎļþ£¬£¬£¬£¬£¬£¬ÈôÊÇÉÏ´«Àֳɽ«Í¨¹ýÒ»¾ä»°Ä¾ÂíÅþÁ¬¹¤¾ß¶ÔЧÀÍÆ÷¾ÙÐпØÖÆ¡£¡£¡£¡£¡£¡£ÊµÑéÉÏ´«Webshell£¬£¬£¬£¬£¬£¬»ñÈ¡ÍøÕ¾¿ØÖÆÈ¨¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220809 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache-Spark-doAS_ÏÂÁî×¢Èë[CVE-2022-33891] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ApacheSparkUIͨ¹ýÉèÖÃÑ¡Ïîspark.acls.enableÉí·ÝÑéÖ¤¹ýÂËÆ÷£¬£¬£¬£¬£¬£¬¼ì²éÓû§ÊÇ·ñ¾ßÓÐÉó²é»òÐÞ¸ÄÓ¦Óᣡ£¡£¡£¡£¡£ÈôÊÇÆôÓÃÁËACL£¬£¬£¬£¬£¬£¬ÔòHttpSecurityFilterÖеĴúÂëÔÊÐíijÈËͨ¹ýÌṩí§ÒâÓû§ÃûÀ´Ö´ÐÐÄ£Äâ¡£¡£¡£¡£¡£¡£¶ñÒâÓû§¿ÉÄÜÈÆ¹ýȨÏÞ¼ì²é¹¦Ð§£¬£¬£¬£¬£¬£¬ÊäÈë¹¹½¨Ò»¸öUnixshellÏÂÁ£¬£¬£¬£¬£¬²¢ÇÒÖ´ÐÐËü¡£¡£¡£¡£¡£¡£½«µ¼ÖÂÖ´ÐÐí§ÒâshellÏÂÁî¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220809 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Master-IP-CAM-01_ÏÂÁîÖ´ÐÐ[CVE-2019-8387] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | MasterIPCAM01ÊÇÒ»¿îÍøÂçÉãÏñ»ú¡£¡£¡£¡£¡£¡£MasterIPCAM013.3.4.2103°æ±¾Öб£´æÏÂÁî×¢ÈëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâÔªËØ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨ÏÂÁî¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220809 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_Shiro_v1.3.2ÒÔÏÂ_ȨÏÞÈÆ¹ý[CVE-2016-6802][CNNVD-201609-372] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ApacheShiroÊÇÒ»¸öǿʢÇÒÒ×ÓõÄJavaÇå¾²¿ò¼Ü£¬£¬£¬£¬£¬£¬Ëü¿ÉÒÔÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£¡£ÏÖÔÚ³£¼û¼¯³ÉÓÚÖÖÖÖÓ¦ÓÃÖоÙÐÐÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬ÊÚȨµÈ¡£¡£¡£¡£¡£¡£¹ØÓÚApacheShiro1.3.2֮ǰµÄ°æ±¾£¬£¬£¬£¬£¬£¬Ê¹ÓÃÒÔ/xx/../¿ªÍ·µÄurl¿ÉÒÔÈÆ¹ýshiroµÄÉí·ÝÑéÖ¤ |
¸üÐÂʱ¼ä£º | 20220809 |
ÊÂÎñÃû³Æ£º | HTTP_Struts2_S2-016/S2-017/S2-018Ô¶³ÌÏÂÁîÖ´ÐбäÐι¥»÷[CVE-2013-2251/4310] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý´øÓС®action:¡¯¡¢¡®redirect:¡¯»ò¡®redirectAction:¡¯µÄǰ׺²ÎÊýʹÓøÃÎó²îÖ´ÐÐí§ÒâOGNL±í´ïʽ¡£¡£¡£¡£¡£¡£Îó²î±£´æµÄ°æ±¾£ºS2-016£ºStruts2.0.0-Struts2.3.15S2-017£ºStruts2.0.0-Struts2.3.15S2-018£ºStruts2.0.0-Struts2.3.15.2¹¥»÷Àֳɣ¬£¬£¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220809 |