2020-09-08

Ðû²¼Ê±¼ä 2020-09-08

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_SangforEDR<3.2.21_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Sangfor Öն˼ì²âÏìӦƽ̨£¨EDR£©ÊÇÉîÐÅ·þ¹«Ë¾ÌṩµÄÒ»Ì×ÖÕ¶ËÇå¾²½â¾ö¼Æ»®¡£´Ë²úÆ·±£´æÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î £¬Î´¾­ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ý·¢ËÍÌØÖÆÇëÇó°ü £¬¿ÉÒÔÔì³ÉÔ¶³ÌÖ´ÐÐÏÂÁîµÄЧ¹û¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_¸¡Í¼Ãæ°å_δÊÚȨ»á¼ûÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½¹¥»÷Õßͨ¹ý»á¼ûÌض¨URLÖ±½Ó»á¼ûÊý¾Ý¿â £¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»á¼ûÊý¾Ý¿âÖеÄÊý¾Ý £¬Ò²¿ÉÄܾÙÐÐһЩΣÏÕ²Ù×÷¡£¸¡Í¼LinuxÃæ°åÊÇÌáÉýÔËάЧÂʵķþÎñÆ÷ÖÎÀíÈí¼þ £¬Ö§³ÖÒ»¼üLAMP/LNMP/¼¯Èº/¼à¿Ø/ÍøÕ¾/FTP/Êý¾Ý¿â/JAVAµÈ100¶àÏî·þÎñÆ÷ÖÎÀí¹¦Ð§ £¬ÒÑ»ñµÃÈ«Çò°ÙÍòÓû§ÈÏ¿É×°Ö᣸¡Í¼ Linux 7.4.2 °æ±¾ºÍWindows 6.8°æ±¾±£´æδÊÚȨ»á¼ûÎó²î¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Apache_Shiro<1.6.0_ÈÏÖ¤ÈƹýÎó²î[CVE-2020-13933][CNNVD-202008-870]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Apache ShiroÊÇÒ»¸öÇ¿Ê¢ÇÒÒ×ÓõÄJavaÇå¾²¿ò¼Ü £¬Ëü¿ÉÒÔÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£ÏÖÔÚ³£¼û¼¯³ÉÓÚÖÖÖÖÓ¦ÓÃÖоÙÐÐÉí·ÝÑéÖ¤ £¬ÊÚȨµÈ¡£¹ØÓÚApache Shiro 1.5.3֮ǰµÄ°æ±¾ £¬µ±½«Apache ShiroÓëSpring¿ØÖÆÆ÷Ò»ÆðʹÓÃʱ £¬¹¥»÷ÕßÌØÖÆÇëÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤Èƹý¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

TCP_ORACLE_TNSListenerÔ¶³ÌͶ¶¾[CVE-2012-1675]

Çå¾²ÀàÐÍ£º

ÍøÂçÊý¾Ý¿â¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼ¹¥»÷Ä¿µÄIPÖ÷»úµÄOracle·þÎñÆ÷¡£Oracle Database ServerÔÚʵÏÖÉϱ£´æ¿ÉÔÊÐí¹¥»÷ÕßÏòÔ¶³ÌTNS Listener×é¼þ´¦Öóͷ£µÄÊý¾ÝͶ¶¾µÄÎó²î £¬¹¥»÷ÕßÎÞÐèÓû§ÃûºÍÃÜÂë¿ÉʹÓôËÎó²î½«Êý¾Ý¿â·þÎñÆ÷µÄÕýµ±TNS Listener×é¼þÖеÄÊý¾ÝתÏòµ½¹¥»÷Õß¿ØÖƵÄϵͳ £¬µ¼Ö¿ØÖÆÔ¶³Ì×é¼þµÄÊý¾Ý¿âʵÀý £¬Ôì³É×é¼þºÍÕýµ±Êý¾Ý¿âÖ®¼äµÄ¹¥»÷Õß¹¥»÷¡¢»á»°Ð®ÖÆ»ò¾Ü¾ø·þÎñ¹¥»÷¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-12725]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZeroshellÊÇÒ»Ì×ÃæÏò·þÎñÆ÷ºÍǶÈëʽϵͳµÄLinux¿¯Ðаæ¡£Zeroshell 3.9.0°æ±¾Öб£´æÇå¾²Îó²î £¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓÐ׼ȷ´¦Öóͷ£HTTP²ÎÊý¡£

¸üÐÂʱ¼ä£º

20200908


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Apache_SkyWalking_GraphQL½Ó¿Ú_SQL×¢ÈëÎó²î

[CVE-2020-9483/CVE-2020-13921][CNNVD-202006-1863/CNNVD-202008-152]

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÊÔͼͨ¹ýApache_SkyWalking GraphQL½Ó¿ÚµÄSQL×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2009-0545]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_ZeroShell_Ô¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200908


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_webshell_Altman_ASP¿ØÖÆÏÂÁî

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPµØµãÖ÷»úÉϵÄAltman webshell¿Í»§¹æÔòÔÚÏòÄ¿µÄIPµØµãÖ÷»úÉϵÄwebshell·þÎñÆ÷¶Ë·¢³ö¿ØÖÆÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200908