ÿÖÜÉý¼¶Í¨¸æ-2023-05-16

Ðû²¼Ê±¼ä 2023-05-16

ÐÂÔöÊÂÎñ

ÊÂÎñÃû³Æ£º

TCP_Îó²îʹÓÃ_·´ÐòÁл¯_Oracle_Weblogic_T3ЭÒé[CVE-2020-2883]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©Õ¹Æ½Ì¨ £¬ÓÃÓÚÔÚÍâµØºÍÔƶ˿ª·¢¡¢°²ÅźÍÔËÐÐÆóÒµÓ¦ÓóÌÐò £¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿É¿¿¡¢³ÉÊìºÍ¿ÉÀ©Õ¹µÄʵÏÖ¡£CVE-2020-2555Îó²î¿ÉÒÔͨ¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»Çå¾²µÄextractÒªÁì £¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ЭÒéÍøÂç»á¼û²¢ÆÆËðÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷ £¬ÀÖ³ÉʹÓôËÎó²î¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»½ÓÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°Ïì¹æÄ££ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÐÅϢй¶_YONYOUNFIDA

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

ufidaÐÅϢй¶Îó²î¹¥»÷ʵÑé

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_ËíµÀÊðÀí¹¤¾ß_nat123ʵÑéת·¢

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

nat123ÊÇÒ»¸öÄÚÍø¶Ë¿ÚÓ³ÉäÈí¼þ £¬ÔÚÄÚÍøÆô¶¯Ó³Éäºó £¬¿ÉÔÚÍâÍøÇáËÉ»á¼ûÅþÁ¬ÄÚÍøÍøÕ¾µÈÓ¦Óà £¬ÊµÏÖÄÚÍø´©Í¸¡£

³£±»ÍøÕ¾¿ª·¢²âÊÔÖ°Ô±»ò¹¥»÷ÕßʹÓá£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_Ç徲Σº¦_¿ÉÒÉÐÐΪ_SNETCracker_·µ»ØÖ÷»úÐÅÏ¢/ÇëÇó¸üÐÂ

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

SNETCracker(³¬µÈÈõ¿ÚÁî)³¬ÊÇÒ»¿îWindowsƽ̨µÄÈõ¿ÚÁîÉó¼Æ¹¤¾ß £¬Ö§³ÖÅúÁ¿¶àÏ̼߳ì²é £¬¿É¿ìËÙ·¢Ã÷ÈõÃÜÂë¡¢Èõ¿ÚÁîÕ˺Å £¬ÃÜÂëÖ§³ÖºÍÓû§ÃûÍŽá¾ÙÐмì²é £¬´ó´óÌá¸ßÀÖ³ÉÂÊ £¬Ö§³Ö×Ô½ç˵·þÎñ¶Ë¿ÚºÍ×ֵ䡣

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ľÂí_Win_Lokibot_LokiPWS_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷ £¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíLokibot_LokiPWSÃÜÂëÇÔÈ¡Æ÷¡£LokiPWSÊÇÒ»¸öÇÔÃÜľÂí £¬»á½«Êܺ¦ÕßÖ÷»úÉÏ´æ´¢µÄÃÜÂë¡¢ä¯ÀÀÆ÷ÉÏ°¶Æ¾Ö¤¡¢¼ÓÃÜÇ®±ÒÇ®°üµÈÐÅÏ¢ÉÏ´«µ½Ô¶³Ì·þÎñÆ÷¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

TCP_Éó¼ÆÊÂÎñ_SMTP_먦Æô¿Í»§¶ËÊÚȨ»á¼û±»¾Ü¾ø

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½smtpЭÒé503¹ýʧ·µ»Ø £¬µ±smtpЭÒéʹÓÃʱ £¬Ã»ÓоÙÐÐÉí·ÝÑéÖ¤»òÉí·ÝÑéÖ¤²»×¼È·Ê±»á·ºÆð503¹ýʧ¡£

¸üÐÂʱ¼ä£º

20230516

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_·´ÐòÁл¯Îó²î[CVE-2020-2883][CVE-2020-14645][CVE-2020-14841][CVE-2020-14825][CVE-2020-14825/CVE-2020-2883/CVE-2020-14645/CVE-2020-14841]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´ipÕýÔÚʹÓÃ10.3.6.0.0¡¢12.1.3.0.0¡¢12.2.1.3.0¡¢12.2.1.4.0ºÍ14.1.1.0.0°æ±¾µÄweblogicÖб£´æµÄ·´ÐòÁл¯Îó²î £¬´Ó¶ø»ñÈ¡Ä¿µÄϵͳµÄȨÏÞ¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Sinapsi_eSolar_Light_Photovoltaic_System_Monitor_SQL×¢Èë[CVE-2012-5861]

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSinapsieSolarLightPhotovoltaicSystemMonitorSQL×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£SinapsieSolarLightÊÇÌ«ÑôÄÜÓ¦ÓÃÄÚʹÓõļà¿Øϵͳ¡£SinapsieSolar £¬SinapsieSolarDUO¹Ì¼þ2.0.2870_2.2.12֮ǰ°æ±¾Öб£´æ¶à¸öSQL×¢ÈëÎó²î¡£Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²îͨ¹ý(1)primo²Ù×÷Öеġ®inverterselect¡¯²ÎÊý´«Ë͵½dettagliinverter.php¾ç±¾»ò(2)¡®lingua¡¯²ÎÊý´«Ë͵½changelanguagesession.php¾ç±¾ £¬Ö´ÐÐí§ÒâSQLÏÂÁî¡£¹¥»÷Õß¿É»ñµÃÃô¸ÐÐÅÏ¢»ò²Ù×÷Êý¾Ý¿â¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÐÅϢй¶_Atlassian-Jira[CVE-2019-8449]

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýHTTP_Atlassian-Jira_ÐÅϢй¶[CVE-2019-8449]Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£AtlassianJira8.4.0֮ǰ°æ±¾/rest/api/latest/groupuserpicker½Ó¿ÚÔÊÐíδÊÚȨÅÌÎÊÔ±¹¤ÐÅÏ¢ £¬¹¥»÷Õß¿ÉÒÔͨ¹ý±¬ÆÆÓû§ÃûÃûµ¥µÈÒªÁì»ñÈ¡Óû§ÐÅϢδÊÚȨµÄ¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡ÊÜÓ°Ïì×é¼þÃô¸ÐÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Linux¿ÉÒÉÏÂÁîÖ´Ðй¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÏÂÁî×¢Èë¹¥»÷ £¬ÊÇÖ¸ÕâÑùÒ»ÖÖ¹¥»÷ÊֶΠ£¬ºÚ¿Íͨ¹ý°ÑϵͳÏÂÁî¼ÓÈëµ½webÇëÇóÒ³ÃæÍ·²¿ÐÅÏ¢ÖÐ £¬Ò»¸ö¶ñÒâºÚ¿ÍÒÔʹÓÃÕâÖÖ¹¥»÷ÒªÁìÀ´²»·¨»ñÈ¡Êý¾Ý»òÕßÍøÂ硢ϵͳ×ÊÔ´¡£null

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁîÓë¿ØÖÆ_Ô¶¿ØºóÃÅ_FiveSys_ÅþÁ¬C2·þÎñÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½FiveSysľÂíºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£FiveSysľÂíÖ÷Òª¹¦Ð§Êǽ«Ê¹ÓÃÕßÁ÷Á¿·öÒýµ½Ìض¨¶ñÒâÊðÀí·þÎñÆ÷£»FiveSysÄ¿µÄÊÇÔÚÓû§ÅþÁ¬ÏßÉÏÓÎϷʱ £¬½«Óû§Á÷Á¿µ¼ÏòÊðÀí·þÎñÆ÷ʱ £¬½è´Ë×èµ²¡¢ÇÔÈ¡Óû§ÕÊÃܵÈÑéÖ¤ÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Agentb_ÅþÁ¬C2·þÎñÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½AgentbľÂíºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Agentb»áÍøÂçÊܺ¦Ö÷»ú»ù±¾ÐÅÏ¢ £¬²¢±£´æ½«Êܺ¦Ö÷»ú¿ØÖƳÉΪÊðÀí·þÎñÆ÷µÄ¿ÉÄÜ¡£

¸üÐÂʱ¼ä£º

20230516