2019-12-10

Ðû²¼Ê±¼ä 2019-12-10

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMBÎó²î×îÏÈʹÓÃ[MS17-010]_ÒÉËÆ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IP¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐMS17-010Îó²îʹÓõÄÐÐΪ.

Microsoft WindowsÊÇ΢ÈíÐû²¼µÄºÜÊÇÊ¢ÐеIJÙ×÷ϵͳ¡£

ÈôÊǹ¥»÷ÕßÏò Microsoft ·þÎñÆ÷·¢Ë;­È«ÐĽṹµÄ»ûÐÎÇëÇó°ü£¬¿ÉÒÔ»ñÈ¡Ä¿µÄ·þÎñÆ÷µÄϵͳȨÏÞ£¬²¢ÇÒÍêÈ«¿ØÖÆÄ¿µÄϵͳ¡£

¸üÐÂʱ¼ä£º

20191210










ÊÂÎñÃû³Æ£º

TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMBÎó²îдÈëshellcode[MS17-010]_Íê³ÉshellcodeдÈë

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IP¶ÔÄ¿µÄÖ÷»úʹÓÃMS17-010Îó²îдÈëshellcodeµÄÐÐΪ.

Microsoft WindowsÊÇ΢ÈíÐû²¼µÄºÜÊÇÊ¢ÐеIJÙ×÷ϵͳ¡£

ÈôÊǹ¥»÷ÕßÏò Microsoft ·þÎñÆ÷·¢Ë;­È«ÐĽṹµÄ»ûÐÎÇëÇó°ü£¬¿ÉÒÔ»ñÈ¡Ä¿µÄ·þÎñÆ÷µÄϵͳȨÏÞ£¬²¢ÇÒÍêÈ«¿ØÖÆÄ¿µÄϵͳ¡£

¸üÐÂʱ¼ä£º

20191210











ÊÂÎñÃû³Æ£º

HTTP_OpenDreamBox_²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î[CVE-2017-14135]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½ÊÔͼͨ¹ýʹÓÃOpenDreamBox²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¾ÙÐй¥»÷µÄÐÐΪ¡£

OpenDreamBox 2.0.0°æ±¾ÖеÄwebadmin²å¼þµÄenigma2-plugins/blob/master/webadmin/src/WebChilds/Script.pyÎļþ±£´æÇå¾²Îó²î¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÏò/script URL·¢ËÍ´øÓÐshellÔª×Ö·ûµÄ¡®command¡¯²ÎÊýʹÓøÃÎó²îÖ´ÐÐí§ÒâµÄ²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20191210











ÊÂÎñÃû³Æ£º

HTTP_Geutebruck_IP_Camera_G-Cam/EFD-2250Çå¾²Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½ÊÔͼͨ¹ýʹÓÃGeutebruck IP Camera G-Cam/EFD-2250Çå¾²Îó²îÀ´Ö´ÐÐÏÂÁîµÄÐÐΪ¡£

Geutebruck IP Camera G-Cam/EFD-2250Êǵ¹úGeutebruck¹«Ë¾µÄÒ»¿îÍøÂçÉãÏñ»ú¡£

Geutebruck IP Camera G-Cam/EFD-2250 1.11.0.12°æ±¾Öб£´æÇå¾²Îó²î¡£Ô¶³Ì¹¥»÷Õ߿ɽèÖú¶à¸ö²ÎÊýʹÓøÃÎó²î»á¼ûroot¼¶±ðµÄ²Ù×÷ϵͳ£¬Ö´ÐдúÂë¡£

¸üÐÂʱ¼ä£º

20191210












ÊÂÎñÃû³Æ£º

HTTP_HooToo_TripMate_Titan_HT-TM05²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃHooToo TripMate Titan HT-TM05 ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¾ÙÐй¥»÷µÄÐÐΪ¡£

HooToo TripMate Titan HT-TM05ÊÇÃÀ¹úHooToo¹«Ë¾µÄÒ»¿î±ãЯʽÎÞÏß·ÓÉÆ÷¡£

ʹÓÃ2.000.022°æ±¾ºÍ2.000.082°æ±¾¹Ì¼þµÄHooToo TripMate Titan HT-TM05·ÓÉÆ÷Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20191210













ÊÂÎñÃû³Æ£º

HTTP_CyberArk_Software_Enterprise_Password_Vault´úÂëÎÊÌâÎó²î[CVE-2019-7442]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃCyberArk Software Enterprise Password Vault´úÂëÎÊÌâÎó²î¾ÙÐй¥»÷µÄÐÐΪ¡£

CyberArk Software Enterprise Password VaultÊÇÒÔÉ«ÁÐCyberArk Software¹«Ë¾µÄÒ»Ì×ÆóÒµÃÜÂëƾ֤ÖÎÃ÷È·¾ö¼Æ»®¡£

CyberArk Enterprise Password Vault 10.7¼°Ö®Ç°°æ±¾ÖеÄPassword Vault Web Access (PVWA) ±£´æ´úÂëÎÊÌâÎó²î¡£¸ÃÎó²îÔ´ÓÚÍøÂçϵͳ»ò²úÆ·µÄ´úÂ뿪·¢Àú³ÌÖб£´æÉè¼Æ»òʵÏÖ²»µ±µÄÎÊÌâ¡£

¸üÐÂʱ¼ä£º

20191203














ÊÂÎñÃû³Æ£º

DNS_ľÂíºóÃÅ_×ϺüGad_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½×ϺüľÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË×ϺüľÂí¡£

×ϺüÊÇÒ»¿î¶ñÒâľÂí£¬±»²î±ðÇå¾²³§ÉÌÃüÃûΪºÚºü¡¢·ÊÍᢾò½ðÓÄÁéµÈ¡£Èö²¥ÇþµÀ¶àÑù£¬Ò»Ñùƽ³£Í¨¹ýÓÎÏ·Íâ¹Ò¡¢µÚÈý·½×°ÖóÌÐòÀ¦°óÈö²¥¡£»¹¿ÉÒÔͨ¹ýÓÀºãÖ®À¶ÒÔ¼°MSSQL±¬ÆƾÙÐÐÈö²¥¡£

×ϺüľÂíÔËÐÐÖ®ºó£¬»áÏÂÖîÈçÁ÷Ã¥Íƹ㡢DDoS¹¥»÷¡¢ÍÚ¿ó¡¢Ô¶¿Ø¡¢Ö÷ҳЮÖƵȶàÖÖ¶ñÒâ²å¼þ¡£ÆäÖÐDDoS¹¥»÷Ä¿µÄ¼¯ÖÐÔÚÓÎϷ˽·þ¡¢ÆåÅƶIJ©ÓÎÏ·¡¢É«ÇéÍøÕ¾µÈ»Ò²úÐÐÒµ¡£

¸üÐÂʱ¼ä£º

20191210













ÊÂÎñÃû³Æ£º

UDP_ľÂíºóÃÅ_×ϺüGad_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½×ϺüľÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË×ϺüľÂí¡£

×ϺüÊÇÒ»¿î¶ñÒâľÂí£¬±»²î±ðÇå¾²³§ÉÌÃüÃûΪºÚºü¡¢·ÊÍᢾò½ðÓÄÁéµÈ¡£Èö²¥ÇþµÀ¶àÑù£¬Ò»Ñùƽ³£Í¨¹ýÓÎÏ·Íâ¹Ò¡¢µÚÈý·½×°ÖóÌÐòÀ¦°óÈö²¥¡£»¹¿ÉÒÔͨ¹ýÓÀºãÖ®À¶ÒÔ¼°MSSQL±¬ÆƾÙÐÐÈö²¥¡£

×ϺüľÂíÔËÐÐÖ®ºó£¬»áÏÂÖîÈçÁ÷Ã¥Íƹ㡢DDoS¹¥»÷¡¢ÍÚ¿ó¡¢Ô¶¿Ø¡¢Ö÷ҳЮÖƵȶàÖÖ¶ñÒâ²å¼þ¡£ÆäÖÐDDoS¹¥»÷Ä¿µÄ¼¯ÖÐÔÚÓÎϷ˽·þ¡¢ÆåÅƶIJ©ÓÎÏ·¡¢É«ÇéÍøÕ¾µÈ»Ò²úÐÐÒµ¡£

¸üÐÂʱ¼ä£º

20191210













ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_×ϺüGad_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½×ϺüľÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË×ϺüľÂí¡£

×ϺüÊÇÒ»¿î¶ñÒâľÂí£¬±»²î±ðÇå¾²³§ÉÌÃüÃûΪºÚºü¡¢·ÊÍᢾò½ðÓÄÁéµÈ¡£Èö²¥ÇþµÀ¶àÑù£¬Ò»Ñùƽ³£Í¨¹ýÓÎÏ·Íâ¹Ò¡¢µÚÈý·½×°ÖóÌÐòÀ¦°óÈö²¥¡£»¹¿ÉÒÔͨ¹ýÓÀºãÖ®À¶ÒÔ¼°MSSQL±¬ÆƾÙÐÐÈö²¥¡£

×ϺüľÂíÔËÐÐÖ®ºó£¬»áÏÂÖîÈçÁ÷Ã¥Íƹ㡢DDoS¹¥»÷¡¢ÍÚ¿ó¡¢Ô¶¿Ø¡¢Ö÷ҳЮÖƵȶàÖÖ¶ñÒâ²å¼þ¡£ÆäÖÐDDoS¹¥»÷Ä¿µÄ¼¯ÖÐÔÚÓÎϷ˽·þ¡¢ÆåÅƶIJ©ÓÎÏ·¡¢É«ÇéÍøÕ¾µÈ»Ò²úÐÐÒµ¡£

¸üÐÂʱ¼ä£º

20191210













ÊÂÎñÃû³Æ£º

HTTP_Squid_v4.7_»º³åÇøÒç³ö_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-12527]

Çå¾²ÀàÐÍ£º

»º³åÒç³ö

ÊÂÎñÐÎò£º

¸ÃÊÂÎñÅú×¢Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSquid v4.7µÄ»º³åÇøÒç³öÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¸ÃÎó²îÊÇÓÉÓÚ¶ÔSquid v4.7ÖеÄdecodeAuthToken½çÏßֵȱ·¦¼ì²é¶ø±¬·¢¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄ·þÎñÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£

¸üÐÂʱ¼ä£º

20191210











ÊÂÎñÃû³Æ£º

HTTP_WordPress_Plugin_FastVelocityMinify_¾ø¶Ô·¾¶Ð¹Â¶Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

WordPress Plugin FastVelocityMinify ¾ø¶Ô·¾¶Ð¹Â¶Îó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£

WordPress Plugin Fast Velocity MinifyÖб£´æ¾ø¶Ô·¾¶Ð¹Â¶Îó²î£¬¹¥»÷Õß¿ÉʹÓøÃÎó²î»ñÈ¡Ãô¸ÐÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20191210











ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_VBS.H.Worm.Rat_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂí¡£

H-wormÊÇÒ»¸ö»ùÓÚVBSÓïÑԵĺóÃÅ£¬¹¦Ð§ºÜÊÇÇ¿Ê¢¡£H-worm½è¼øÁËnjRATµÄ¿ªÔ´´úÂ룬·þÎñ¶ËΪʹÓÃVBS¾ç±¾±àдµÄÈä³æ²¡¶¾£¬ÊÊÓÃÓÚWindowsȫϵ²Ù×÷ϵͳ²¢ÇÒʹÓÃÁ˽ÏÁ¿ÏȽøµÄUser-Agentת´ïÊý¾ÝµÄ·½·¨£¬Ö÷ÒªÈö²¥·½·¨ÓÐÈýÖÖ:µç×ÓÓʼþ¸½¼þ¡¢¶ñÒâÁ´½ÓºÍ±»Ñ¬È¾µÄUÅÌÈö²¥,Èä³æʽµÄÈö²¥»úÖÆ»áÐγɴó×ÚµÄѬȾ¡£ÓÉÓÚÆ侫Á·ÓÐÓõÄÔ¶¿Ø¹¦Ð§¡¢·ÇPE¾ç±¾Ò×ÓÚÃâɱ¡¢±ãÓÚÐ޸ĵÈÌØÕ÷,Ò»Ö±±»ºÚ²úËùÇàíù¶ø»îÔ¾ÖÁ½ñ¡£

¸üÐÂʱ¼ä£º

20191210













ÊÂÎñÃû³Æ£º

HTTP_Jenkins_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2018-1000861]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_Jenkins_Ô¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ

¸üÐÂʱ¼ä£º

20191210