2020-09-19

°ä²¼¹¦·ò 2020-09-21

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Apache_DolphinScheduler_Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2020-11974]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃApache DolphinSchedulerµÄJDBC¿Í»§¶Ë½øÐз´ÐòÁл¯²Ù×÷½ø¶øµ¼ÖÂÔ¶³Ì´úÖ´ÐС£Apache DolphinScheduler(Incubator,Ô­Easy Scheduler)ÊÇÒ»¸öÉ¢²¼Ê½Êý¾Ý¹¤×÷Á÷¹¤×÷µ÷¶Èϵͳ £¬ÖØÒª½â¾öÊý¾ÝÑз¢ETLÅ̸ù´í½ÚµÄÒÀÀµ¹ØÏµ £¬¶ø²»ÄÜÖ±¹Û¼à¿Ø¹¤×÷½¡È«×´Ì¬µÈÎÊÌâ¡£

¸üй¦·ò£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_WordpressFile-manager_ËÁÒâÎļþÉÏ´«·ì϶

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

File ManagerÊÇÒ»¸öWordPress²å¼þ £¬ÓÉÓÚº¯Êý´¦Öò»ÑϽ÷ £¬¹¥»÷Õ߿ɻú¹Ø¶ñÒâÒªÇó°üÉÏ´«ËÁÒâÎļþ¡£

¸üй¦·ò£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_ComtrendVR3033_ºÅÁî×¢Èë·ì϶[CVE-2020-10173][CNNVD-202003-207]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

Comtrend VR-3033ÊÇ¿µÈ«µçѶ£¨Comtrend£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£ ʹÓÃDE11-416SSG-C01_R02.A2pvI042j1.d26m°æ±¾¹Ì¼þµÄComtrend VR-3033ÖдæÔÚ²Ù×÷ϵͳºÅÁî×¢Èë·ì϶¡£¸Ã·ì϶ԴÓÚ±í²¿ÊäÈëÊý¾Ý»ú¹Ø²Ù×÷ϵͳ¿ÉÖ´ÐкÅÁî¹ý³ÌÖÐ £¬ÍøÂçϵͳ»ò²úƷδÕýÈ·¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ºÅÁîµÈ¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ִÐз¸·¨²Ù×÷ϵͳºÅÁî¡£¹¥»÷Õß¿ÉÄÜÊǶñÒâÈí¼þMirai £¬¿ÉÆëÈ«½ÚÔì±»Ö²Èë»úе¡£

¸üй¦·ò£º

20200919


Åú¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

DNS_ľÂí_¿ÉÒÉ¿ó³ØÓòÃû½âÎöÒªÇó

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º

¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÍÚ¿óľÂí¡£

¸üй¦·ò£º

20200919


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_³¢ÊÔÏνӿó³Ø

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º

¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£

¸üй¦·ò£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_Apache_Shiro<1.6.0_ÈÏÖ¤ÈÆ¹ý·ì϶[CVE-2020-13933][CNNVD-202008-870]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

Apache ShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü £¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤ £¬ÊÚȨµÈ¡£¶ÔÓÚApache Shiro 1.5.3֮ǰµÄ°æ±¾ £¬µ±½«Apache ShiroÓëSpring½ÚÔìÆ÷һ·ʹÓÃʱ £¬¹¥»÷ÕßÌØÔìÒªÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤ÈÆ¹ý¡£

¸üй¦·ò£º

20200919