ÿÖÜÉý¼¶²¼¸æ-2021-06-29

°ä²¼¹¦·ò 2021-06-30

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_¿ó»úÕ˺ŵǼ(BTC/LTC)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö£º

¼ì²âµ½Ä¾ÂíÊÔͼÏÎ½Ó¿ó³Ø½øÐпó»úÕ˺ŵǼÐÐΪ¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£

¸üй¦·ò£º

20210629


ÊÂÎñÃû³Æ£º

HTTP_IOT·ì϶_º  £¿µÍþÊÓ¶à¿îÉãÏñÍ·_δÊÚȨ½Ó¼û[CVE-2017-7921/CVE-2017-7923][CNNVD-201704-1049/CNNVD-201704-1047]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö£º

ÔÚHikvisionDS-2CD2xx2F-IϵÁÐV5.2.0°æ±¾140721ÖÁV5.4.0°æ±¾160530£¬DS-2CD2xx0F-IϵÁÐV5.2.0°æ±¾140721ÖÁV5.4.0°æ±¾Build160401£¬DS-2CD2xx2FWDϵÁÐV5Öз¢ÏÖÁ˲»ÕýÈ·µÄÉí·ÝÑéÖ¤ÎÊÌâ¡£3.1°æ±¾150410ÖÁV5.4.4°æ±¾161125£¬DS-2CD4x2xFWDϵÁÐV5.2.0°æ±¾140721ÖÁV5.4.0°æ±¾160414£¬DS-2CD4xx5ϵÁÐV5.2.0°æ±¾140721ÖÁV5.4.0°æ±¾160421£¬DS-2DFxϵÁÐV5.2.0°æ±¾140805ÖÁV5.4.5ÄÚ²¿°æ±¾160928£¬DS-2CD63xxϵÁÐV5.0.9ÖÁ140305ÖÁV5.3.5ÄÚ²¿°æ±¾160106¡£µ±ÀûÓ÷¨Ê½ÎÞ·¨³ä·Ö»òÕýÈ·µØ¶ÔÓû§½øÐÐÉí·ÝÑé֤ʱ£¬¾Í»á³öÏÖ²»ÕýÈ·µÄÉí·ÝÑéÖ¤·ì϶¡£Õâ¿ÉÄÜÔÊÐí¶ñÒâÓû§Éý¼¶ÆäÔÚϵͳÉϵÄÌØÈ¨²¢»ñµÃ¶ÔÃô¸ÐÐÅÏ¢µÄ½Ó¼û¡£

¸üй¦·ò£º

20210629


ÊÂÎñÃû³Æ£º

HTTP_°²È«·ì϶_Gitlab_Ci_lintδÊÚȨSSRF·ì϶[CVE-2021-22214]

°²È«ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÃèÊö£º

GitLabÊÇÃÀ¹úGitLab¹«Ë¾µÄÒ»¿îʹÓÃRubyonRails¿ª·¢µÄ¡¢×ÔÍйܵġ¢Git£¨°æ±¾½ÚÔìϵͳ£©ÏîÄ¿²Ö¿âÀûÓ÷¨Ê½¡£¸Ã·¨Ê½¿ÉÓÃÓÚ²éÔÄÏîÖ÷ÕÅÎļþÄÚÈÝ¡¢Ìá½»º¹Çà¡¢BugÁбíµÈ¡£CILintAPIµÄÖ÷ÕÅÊÇÑéÖ¤GitlabµÄCI/CDYAMLÅäÖ㬶øCIÅäÖÃÎļþÄܹ»Ê¹ÓÃinclude±êÇ©À´Ô̺¬À´×ÔÔ¶³ÌURLµÄYAMLÄ£°å¡£ÓÉÓÚ¶ÔÓû§ÌṩµÄÊäÈëµÄÑéÖ¤²»¼°£¬Ô¶³Ì¹¥»÷ÕßÄܹ»·¢ËÍÌØÔìµÄHTTPÒªÇ󲢺ýŪÀûÓ÷¨Ê½ÏòËÁÒâϵͳÌáÒéÒªÇó¡£

¸üй¦·ò£º

20210629


Åú¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_³¢ÊÔÏνӿó³Ø_¿ó»úµÇ¼Ç(BTC/LTC)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö£º

¼ì²âµ½ÍÚ¿óľÂíÊÔͼÏÎ½Ó¿ó³Ø½øÐпó»úµÇ¼ÇµÄÐÐΪ¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£

¸üй¦·ò£º

20210629


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_ÏÎ½Ó¿ó³Ø³É¹¦(BTC/LTC)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö£º

¼ì²âµ½µ½ÍÚ¿óľÂíCPUMinerÏÎ½Ó¿ó³Ø³É¹¦µÄÐÐΪ¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£

¸üй¦·ò£º

20210629


ɾ³ýÊÂÎñ


1. HTTP_ľÂíºóÃÅ_webshell_PHP_ÔÚÏßexpרÓÃÃâɱ°æwebľÂí

2. HTTP_DURPAL_Core_RESTful_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2019-6340]