ÿÖÜÉý¼¶Í¨¸æ-2023-05-02
Ðû²¼Ê±¼ä 2023-05-02ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Linux¿ÉÒÉÏÂÁîÖ´Ðй¥»÷ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÏÂÁî×¢Èë¹¥»÷£¬ÊÇÖ¸ÕâÑùÒ»ÖÖ¹¥»÷ÊֶΣ¬ºÚ¿Íͨ¹ý°ÑϵͳÏÂÁî¼ÓÈëµ½webÇëÇóÒ³ÃæÍ·²¿ÐÅÏ¢ÖУ¬Ò»¸ö¶ñÒâºÚ¿ÍÒÔʹÓÃÕâÖÖ¹¥»÷ÒªÁìÀ´²»·¨»ñÈ¡Êý¾Ý»òÕßÍøÂ硢ϵͳ×ÊÔ´¡£null |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | ICMP_ºáÏòÒƶ¯_ÄÚÍøÐÅÏ¢ÍøÂç_Fscan_1.8.2_ICMPɨÃè |
Çå¾²ÀàÐÍ£º | Ç徲ɨÃè |
ÊÂÎñÐÎò£º | FscanÊÇÒ»¿îʹÓÃgoÓïÑÔʵÏÖµÄɨÃ蹤¾ß£¬ÆäÓµÓÐ̽²âÖ÷»ú´æ»î¡¢ÍøÂçÐÅÏ¢¡¢É¨ÃèÎó²î¡¢±¬ÆÆÃÜÂë¡¢Îó²îʹÓõȶàÖÖ¹¦Ð§£¬¹¥»÷Õß¿ÉÒÔʹÓøù¤¾ß¶ÔÓòÄÚ×ʲúÇéÐÎ×öÆðÔ´µÄɸѡºÍÊáÀí£¬¸ÃÊÂÎñÖ÷Òª¼ì²â1.8.2°æ±¾ÖÐFscan¹¤¾ßµÄicmpɨÃèģʽ¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Raccoon.Stealer_ÆÊÎöC2ÓòÃûÇëÇó |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Raccoon.StealerľÂíʵÑéÆÊÎöC2ÓòÃû¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËRaccoon.Stealer¡£ RaccoonÒ²±»³ÆΪ Mohazo»òRacealer£¬ÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄÇÔÃÜľÂí¡£Ëü¿ÉÒÔÇÔÈ¡Ö÷Á÷ä¯ÀÀÆ÷¡¢Cryptocurrency Wallets¡¢EmailsµÈ¿Í»§¶ËÉúÑĵÄÕ˺ÅÃÜÂë¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Necurs_C2ÓòÃûÆÊÎöÇëÇó |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Necurs ľÂíʵÑéÆÊÎöC2ÓòÃû¡£Necurs ½©Ê¬ÍøÂçÓÚ 2012 ÄêÊ״α»·¢Ã÷£¬ËüÓɼ¸°ÙÍǫ̀ÊÜѬȾµÄ×°±¸×é³É£¬Ò»Ö±ÖÂÁ¦ÓÚ·Ö·¢ÒøÐжñÒâÈí¼þ¡¢¼ÓÃÜЮÖƶñÒâÈí¼þ¡¢ÀÕË÷Èí¼þÒÔ¼°Ã¿´ÎÔËÐÐʱ·¢Ë͸øÊý°ÙÍòÊÕ¼þÈ˵ÄÖÖÖÖµç×ÓÓʼþ¾ÙÐÐÕ©Æ¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_ÆäËü×¢Èë_Apache-solr_·þÎñÆ÷ÇëÇóαÔìÎó²î[CVE-2017-3164][CNNVD-201902-575] |
Çå¾²ÀàÐÍ£º | ×¢Èë¹¥»÷ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApacheSolr·þÎñÆ÷ÇëÇóαÔìÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ Apache SolrÔÚ 1.3-7.6 °æ±¾ÖеÄReplicationHandlerÀà¶ÔÊäÈëÊý¾ÝÊý¾Ý´¦Öóͷ£²»µ±£¬±£´æ·þÎñÆ÷ÇëÇóαÔìÎó²î¡£½á¹¹¶ñÒâÇëÇ󣬿ÉÒÔ̽²â·þÎñÆ÷×ÊÔ´£¬½ø¶ø¹¥»÷·þÎñÆ÷ÄÚÍø¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_Îó²îʹÓÃ_Apache-Solr_ÐÅϢй¶[CVE-2021-44548] |
Çå¾²ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache Solr ÐÅϢй¶Îó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬Ê¹ÓÃJava±àд¡¢ÔËÐÐÔÚServletÈÝÆ÷µÄÒ»¸ö×ÔÁ¦µÄÈ«ÎÄËÑË÷·þÎñÆ÷£¬ÊÇApacheLuceneÏîÄ¿µÄ¿ªÔ´ÆóÒµËÑË÷ƽ̨¡£¸ÃÎó²îÓ°ÏìÁË8.11.1֮ǰµÄËùÓÐApache Solr°æ±¾£¨½öÓ°ÏìWindowsƽ̨£©¡£Apache SolrµÄDataImportHandlerÖб£´æÒ»¸ö²»×¼È·µÄÊäÈëÑéÖ¤Îó²î£¬¿ÉʹÓÃWindows UNC·¾¶´ÓSolrÖ÷»úŲÓÃÍøÂçÉϵÄÁíһ̨Ö÷»úµÄSMB·þÎñ£¬»òµ¼ÖÂSMB¹¥»÷£¬´Ó¶øÔì³ÉÃô¸ÐÊý¾Ýй¶¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | TCP_ľÂíºóÃÅ_Gh0st.SQ_ÅþÁ¬C2·þÎñÆ÷ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô¶¿ØºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÔ¶¿ØºóÃÅGh0st.SQ¡£Gh0st.SQÊÇÒ»¿î»ùÓÚGh0stÔ´Âëħ¸ÄµÄÔ¶¿ØºóÃÅ£¬ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£Í¨¹ý¹©Ó¦Á´¹¥»÷µÄÐÎʽ¾ÙÐÐÈö²¥£¬¹¥»÷ÕßαÔì¸ß·ÂµÄÈí¼þÏÂÔØÒ³Ã棬²¢ÔÚ¸÷´óËÑË÷ÒýÇæͶ·Å¹ã¸æ£¬Ö¸µ¼Óû§ÏÂÔØ×°ÖÃÀ¦°óÔ¶³Ì¿ØÖÆľÂíµÄ¶ñÒâ×°Öðü¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_½©Ê¬ÍøÂç_Andromeda_ÅþÁ¬ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½½©Ê¬ÍøÂçAndromedaÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËAndromeda¡£AndromedaÊÇÒ»¸öÄ£¿é»¯µÄ½©Ê¬ÍøÂ磬×îÔʼµÄÎļþ½ö°üÀ¨Ò»¸ö¼ÓÔØÆ÷¡£ÔËÐÐʱ´ú£¬»á´ÓC&C·þÎñÆ÷ÏÂÔØÖÖÖÖÄ£¿é£¬Í¬Ê±Ò²¾ßÓз´ÐéÄâ»úºÍ·´µ÷ÊԵĹ¦Ð§¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_Îó²îʹÓÃ_ÏÂÁîÖ´ÐÐ_Apache_Solr_RunExecutableListener[CVE-2017-12629][CNNVD-201710-501] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApacheSolrsolrÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ApacheSolrÊÇApache¿ª·¢µÄÒ»¸ö¿ªÔ´µÄ»ùÓÚLuceneµÄÈ«ÎÄËÑË÷·þÎñÆ÷¡£ÆäÜöÝ͵ÄÉèÖÃÒªÁ죨config·¾¶£©¿ÉÒÔÔöÌíºÍÐ޸ļàÌýÆ÷£¬Í¨¹ýRunExecutableListenerÖ´ÐÐí§ÒâϵͳÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_SolrÔ¶³Ì·´ÐòÁл¯´úÂëÖ´ÐÐÎó²î[CVE-2019-0192][CNNVD-201903-229] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache SolrÔ¶³Ì·´ÐòÁл¯´úÂëÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ Apache SolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñÆ÷¡£SolrʹÓÃJavaÓïÑÔ¿ª·¢£¬Ö÷Òª»ùÓÚHTTPºÍ Apache LuceneʵÏÖ¡£Apache Solr solr.RunExecutableListenerÀà±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷ÕßÏòÍøÕ¾·¢ËÍÈ«ÐĽṹµÄ¹¥»÷payload£¬¹¥»÷ÀֳɿÉÒÔÔ¶³ÌÖ´ÐÐí§ÒâÏÂÁ½ø¶ø¿ØÖÆ·þÎñÆ÷¡£ ͨ¹ýŲÓÃConfig APIÐÞ¸Äjmx.serviceUrlÊôÐÔÖ¸Ïò¶ñÒâµÄRMI·þÎñ£¬µ¼ÖÂApache Solr·ºÆðÔ¶³Ì·´ÐòÁл¯´úÂëÖ´ÐеÄÇå¾²Îó²î¡£ ʵÑé¾ÙÐÐí§ÒâÎļþ¶ÁÈ¡£¬ÇÔÈ¡Ãô¸ÐÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_Solr_Velocity_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-13957] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache_Solr_VelocityÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_Solr_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-17558][CNNVD-201912-1225] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApacheSolrVelocityResponseWriterÔ¶³Ì´úÂëÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ApacheSolrÊÇÃÀ¹ú°¢ÅÁÆ棨Apache£©Èí¼þ»ù½ð»áµÄÒ»¿î»ùÓÚLucene£¨Ò»¿îÈ«ÎÄËÑË÷ÒýÇ棩µÄËÑË÷·þÎñÆ÷¡£¸Ã²úÆ·Ö§³Ö²ãÃæËÑË÷¡¢±ÊÖ±ËÑË÷¡¢¸ßÁÁÏÔʾËÑË÷Ч¹ûµÈ¡£ApacheSolr5.0.0°æ±¾ÖÁ8.3.1°æ±¾Öб£´æÊäÈëÑéÖ¤¹ýʧÎó²î¡£¸ÃÎó²îÔ´ÓÚÍøÂçϵͳ»ò²úƷδ¶ÔÊäÈëµÄÊý¾Ý¾ÙÐÐ׼ȷµÄÑéÖ¤¡£¹¥»÷ÕßÏòÍøÕ¾·¢ËÍÈ«ÐĽṹµÄ¹¥»÷payload£¬¹¥»÷ÀֳɿÉÒÔÔ¶³ÌÖ´ÐÐí§ÒâÏÂÁ½ø¶ø¿ØÖÆ·þÎñÆ÷¡£ÊµÑé¾ÙÐÐí§ÒâÎļþ¶ÁÈ¡£¬ÇÔÈ¡Ãô¸ÐÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ToTolink_N600R·ÓÉÆ÷_Exportovpn_δÊÚȨÏÂÁî×¢Èë |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýToTolinkN600R·ÓÉÆ÷ExportovpnÏÂÁî×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£ÔÚToTolinkN600R·ÓÉÆ÷µÄcstecgi.cgiÎļþÖУ¬exportovpn½Ó¿Ú±£´æÏÂÁî×¢È룬¹¥»÷Õ߿ɽè´ËδÑéÖ¤Ô¶³ÌÖ´ÐжñÒâÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_Solr_SSRFÎó²î[CVE-2021-27905] |
Çå¾²ÀàÐÍ£º | ×¢Èë¹¥»÷ |
ÊÂÎñÐÎò£º | ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬Ê¹ÓÃJava±àд¡¢ÔËÐÐÔÚServletÈÝÆ÷µÄÒ»¸ö×ÔÁ¦µÄÈ«ÎÄËÑË÷·þÎñÆ÷£¬ÊÇApacheLuceneÏîÄ¿µÄ¿ªÔ´ÆóÒµËÑË÷ƽ̨¡£¸ÃÎó²îÊÇÓÉÓÚûÓжÔÊäÈëµÄÄÚÈݾÙÐÐУÑ飬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚδÊÚȨµÄÇéÐÎÏ£¬½á¹¹¶ñÒâÊý¾ÝÖ´ÐÐSSRF¹¥»÷£¬×îÖÕÔì³Éí§Òâ¶ÁÈ¡·þÎñÆ÷ÉϵÄÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Spring_Boot_Actuator_mysqljdbc_Ô¶³Ì´úÂëÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´ipÕýÔÚʹÓÃActuatorµÄ/env½Ó¿ÚÉèÖÃÊôÐÔ½«spring.datasource.urlÉèÖÃΪÍⲿ¶ñÒâmysqljdbcurlµØµã¡£SpringBootActuatorÊÇÒ»¿î¿ÉÒÔ×ÊÖúÄã¼à¿ØϵͳÊý¾ÝµÄ¿ò¼Ü,Æä¿ÉÒÔ¼à¿ØÐí¶àÐí¶àµÄϵͳÊý¾Ý,ËüÓжÔÓ¦ÓÃϵͳµÄ×ÔÊ¡ºÍ¼à¿ØµÄ¼¯ÀÖ³ÉÄÜ£¬¿ÉÒÔÉó²éÓ¦ÓÃÉèÖõÄÏêϸÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_PHP_imap_ÏÂÁîÖ´ÐÐ[CVE-2018-19518][CNNVD-201811-666] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÔÚPHPºÍÆäËû²úÆ·µÄimap_open£¨£©ÖÐʹÓõÄUNIXÉϵĻªÊ¢¶Ù´óѧIMAP¹¤¾ß°ü2007fÆô¶¯rshÏÂÁ½èÖúÓÚc-client/imap4r1.cÖеÄimap_rimapº¯ÊýºÍosdep/unix/tcp_unixÖеÄtcp_aopenº¯Êý.c£©£¬¶ø²»»á×èÖ¹²ÎÊý×¢È룬ÈôÊÇIMAP·þÎñÆ÷Ãû³ÆÊDz»ÊÜÐÅÍеÄÊäÈ루ÀýÈ磬ÓÉWebÓ¦ÓóÌÐòµÄÓû§ÊäÈ룩£¬²¢ÇÒrshÒѱ»¾ßÓвî±ð²ÎÊýµÄ³ÌÐòÌæ»»£¬ÔòÔ¶³Ì¹¥»÷Õß¿ÉÄÜ»áÖ´ÐÐí§ÒâOSÏÂÁîÓïÒå¡£ÀýÈ磬ÈôÊÇrshÊÇsshµÄÁ´½Ó£¨ÈçÔÚDebianºÍUbuntuϵͳÉÏ¿´µ½µÄ£©£¬Ôò¹¥»÷¿ÉÒÔʹÓðüÀ¨¡°-oProxyCommand¡±²ÎÊýµÄIMAP·þÎñÆ÷Ãû³Æ¡£ |
¸üÐÂʱ¼ä£º | 20230502 |
ÊÂÎñÃû³Æ£º | TCP_ÌáȨ¹¥»÷_FlaskÄÚ´æÂí×¢Èë_´úÂëÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½ÏÖÔÚÄ¿µÄÖ÷»úÉϵÄFlask·þÎñÔÚ¿ª·ÅÁËÌí¼Ó·Óɹ¦Ð§µÄÇéÐÎÏ£¬Êܵ½×¢Èë´úÂëÖ´Ðй¥»÷¡£FlaskÊÇÒ»¸öʹÓÃPython±àдµÄÇáÁ¿¼¶WebÓ¦Óÿò¼Ü¡£ÆäWSGI¹¤¾ßÏä½ÓÄÉWerkzeug£¬Ä£°åÒýÇæÔòʹÓÃJinja2¡£ |
¸üÐÂʱ¼ä£º | 20230502 |