2020-09-08

°ä²¼¹¦·ò 2020-09-08

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_SangforEDR<3.2.21_Ô¶³ÌºÅÁîÖ´Ðзì϶

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

Sangfor Öն˼ì²âÏìӦƽ̨£¨EDR£©ÊÇÉîÕÛ·þ¹«Ë¾ÌṩµÄÒ»Ì×Öն˰²È«½â¾ö¹æ»®¡£´Ë²úÆ·´æÔÚÔ¶³ÌºÅÁîÖ´Ðзì϶ £¬Î´¾­¹ýÉí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ý·¢ËÍÌØÔìÒªÇó°ü £¬Äܹ»Ôì³ÉÔ¶³ÌÖ´ÐкÅÁîµÄºó¹û¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_±¦ËþÃæ°å_δÊÚȨ½Ó¼û·ì϶

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

¼ì²âµ½¹¥»÷Õßͨ¹ý½Ó¼ûÌØ¶¨URLÖ±½Ó½Ó¼ûÊý¾Ý¿â £¬³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½Ó¼ûÊý¾Ý¿âÖеÄÊý¾Ý £¬Ò²¿ÉÄܽøÐÐһЩΣÏÕ²Ù×÷¡£±¦ËþLinuxÃæ°åÊÇÌáÉýÔËάЧÄܵķþÎñÆ÷ÖÎÀíÈí¼þ £¬Ö§³ÖÒ»¼üLAMP/LNMP/¼¯Èº/¼à¿Ø/ÍøÕ¾/FTP/Êý¾Ý¿â/JAVAµÈ100¶àÏî·þÎñÆ÷ÖÎÀíÖ°ÄÜ £¬ÒÑ»ñµÃÈ«Çò°ÙÍòÓû§ÈÏ¿É×°Öᣱ¦Ëþ Linux 7.4.2 °æ±¾ºÍWindows 6.8°æ±¾´æÔÚδÊÚȨ½Ó¼û·ì϶¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_Apache_Shiro<1.6.0_ÈÏÖ¤ÈÆ¹ý·ì϶[CVE-2020-13933][CNNVD-202008-870]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

Apache ShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü £¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤ £¬ÊÚȨµÈ¡£¶ÔÓÚApache Shiro 1.5.3֮ǰµÄ°æ±¾ £¬µ±½«Apache ShiroÓëSpring½ÚÔìÆ÷һ·ʹÓÃʱ £¬¹¥»÷ÕßÌØÔìÒªÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤ÈÆ¹ý¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

TCP_ORACLE_TNSListenerÔ¶³ÌͶ¶¾[CVE-2012-1675]

°²È«ÀàÐÍ£º

ÍøÂçÊý¾Ý¿â¹¥»÷

ÊÂÎñÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼ¹¥»÷Ö÷ÕÅIPÖ÷»úµÄOracle·þÎñÆ÷¡£Oracle Database ServerÔÚʵÏÖÉÏ´æÔÚ¿ÉÔÊÐí¹¥»÷ÕßÏòÔ¶³ÌTNS Listener×é¼þ´¦ÖõÄÊý¾ÝͶ¶¾µÄ·ì϶ £¬¹¥»÷ÕßÎÞÐèÓû§ÃûºÍÃÜÂë¿ÉÀûÓô˷ì϶½«Êý¾Ý¿â·þÎñÆ÷µÄºÏ·¨TNS Listener×é¼þÖеÄÊý¾ÝתÏòµ½¹¥»÷Õß½ÚÔìµÄϵͳ £¬µ¼Ö½ÚÔìÔ¶³Ì×é¼þµÄÊý¾Ý¿âÊ·ý £¬Ôì³É×é¼þºÍºÏ·¨Êý¾Ý¿âÖ®¼äµÄ¹¥»÷Õß¹¥»÷¡¢»á»°½Ù³Ö»ò»Ø¾ø·þÎñ¹¥»÷¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2019-12725]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

ZeroshellÊÇÒ»Ì×ÃæÏò·þÎñÆ÷ºÍǶÈëʽϵͳµÄLinux¿¯Ðаæ¡£Zeroshell 3.9.0°æ±¾ÖдæÔÚ°²È«·ì϶ £¬¸Ã·ì϶ԴÓÚ·¨Ê½Ã»ÓÐÕýÈ·´¦ÖÃHTTP²ÎÊý¡£

¸üй¦·ò£º

20200908


Åú¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Apache_SkyWalking_GraphQL½Ó¿Ú_SQL×¢Èë·ì϶

[CVE-2020-9483/CVE-2020-13921][CNNVD-202006-1863/CNNVD-202008-152]

°²È«ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÔÚÊÔͼͨ¹ýApache_SkyWalking GraphQL½Ó¿ÚµÄSQL×¢Èë·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2009-0545]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃHTTP_ZeroShell_Ô¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£

¸üй¦·ò£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_webshell_Altman_ASP½ÚÔìºÅÁî

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º

¼ì²âµ½Ô´IPµØÖ·Ö÷»úÉϵÄAltman webshell¿Í»§¶ËÕýÔÚÏòÖ÷ÕÅIPµØÖ·Ö÷»úÉϵÄwebshell·þÎñÆ÷¶Ë·¢³ö½ÚÔìºÅÁî¡£

¸üй¦·ò£º

20200908