2021-01-19

Ðû²¼Ê±¼ä 2021-01-19

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_ÅþÁ¬¿ó³ØÀÖ³É

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½µ½ÍÚ¿óľÂíCPUMinerÅþÁ¬¿ó³ØÀֳɵÄÐÐΪ¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerľÂí¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Netis_WF2419_²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î[CVE-2019-19356][CNNVD-202002-238]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ʹÓÃV1.2.31805ºÍV2.2.36123°æ±¾¹Ì¼þµÄNetisWF2419Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ZendFramework_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2021-3007][CNNVD-202101-025]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZENDZendFramework£¨ZF£©ÊÇÃÀ¹úZend£¨ZEND£©¹«Ë¾µÄÒ»Ì׿ªÔ´µÄPHP¿ª·¢¿ò¼Ü£¬£¬£¬£¬£¬ËüÖ÷ÒªÓÃÓÚ¿ª·¢Web³ÌÐòºÍЧÀÍ¡£¡£¡£¡£¡£¡£ZendFramework3.0.0°æ±¾±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚÓÐÒ»¸ö·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_ÎļþÉÏ´«_Apache_Flinkí§ÒâÎļþÉÏ´«Îó²î[CVE-2020-17518][CNNVD-202101-273]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache_Flink1.5.1¾ÙÐÐí§ÒâÎļþÉÏ´«;ApacheFlinkÊǾßÓÐǿʢµÄÁ÷ºÍÅú´¦Öóͷ£¹¦Ð§µÄ¿ªÔ´Á÷´¦Öóͷ£¿ò¼Ü¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Technicolor_TD5130_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-18396][CVE-2019-18396][CNNVD-201910-1908]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

TechnicolorTD5130v2ÊÇ·¨¹úÌØÒÕ£¨Technicolor£©¹«Ë¾µÄÒ»¿îµ÷ÖÆ½âµ÷Æ÷¡£¡£¡£¡£¡£¡£TechnicolorTD5130v2ÖеÄOiµÚÈý·½¹Ì¼þµÄPingÄ£¿£¿£¿ £¿é±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâÔªËØ£¬£¬£¬£¬£¬µ¼Ö¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨ÏÂÁî¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Schneider_Electric_U.Motion_BuilderÏÂÁî×¢ÈëÎó²î[CVE-2018-7841][CNNVD-201905-612]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

SchneiderElectricU.MotionBuilderÊÇ·¨¹úÊ©ÄÍµÂµçÆø£¨SchneiderElectric£©¹«Ë¾µÄÒ»Ì×ÐÞ½¨ÎïÖÇÄÜÖÎÀíϵͳ¡£¡£¡£¡£¡£¡£SchneiderElectricU.MotionBuilder1.3.4¼°Ö®Ç°°æ±¾ÖеÄtrack_import_export.php¾ç±¾Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬£¬£¬£¬£¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£ZabbixÊÇÒ»¸ö¿ªÔ´µÄÆóÒµ¼¶ÐÔÄÜ¼à¿Ø½â¾ö¼Æ»®¡£¡£¡£¡£¡£¡£Zabbix°æ±¾2.2-3.0.3±£´æZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓôËÎó²îÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐϵͳÏÂÁî¡£¡£¡£¡£¡£¡£ÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_IBM_WebSphere_Java·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2015-7450]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

WebSphereÊÇIBM¹«Ë¾¿ª·¢µÄÖÐÐļþ»ù´¡Éèʩƽ̨¡£¡£¡£¡£¡£¡£WebSphere7°æ±¾ÔÚ¿ª·¢ÖÐʹÓÃÁËApacheCommonsCollections¿âÖеÄInvokerTransformerÀ࣬£¬£¬£¬£¬¸ÃÀà±£´æJava·´ÐòÁл¯Îó²î¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃNETGEAR_DGN2200_v1v2v3v4_Ô¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬£¬£¬£¬£¬ÊÔͼͨ¹ýÔ¶³Ì´úÂëÖ´ÐÐÎó²îÈëÇÖNETGEAR·ÓÉÆ÷£¬£¬£¬£¬£¬¿ÉÒÔÖ´ÐÐí§ÒâÏÂÁî»ñµÃ·ÓÉÆ÷µÄ¿ØÖÆÈ¨¡£¡£¡£¡£¡£¡£NETGEAR_DGN2200ÊÇÒ»¿î³£ÓõÄÎÞÏß·ÓÉÆ÷×°±¸¡£¡£¡£¡£¡£¡£NETGEAR_DGN2200·ÓÉÆ÷µÄv1/v2/v3/v4°æ±¾±£´ædnslookup.cgiÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¡£Ä¿½ñ·ÓÉÆ÷¹Ì¼þΪÕâЩ°æ±¾Ê±±£´æ¸ÃÎó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý×Ô¶¯»¯¾ç±¾¹¥»÷ÍøÂçÖеÄ·ÓÉÆ÷×°±¸£¬£¬£¬£¬£¬Ö´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÊµÑéÔÚÄ¿µÄ·ÓÉÆ÷×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬£¬¿ØÖÆÄ¿µÄ·ÓÉÆ÷ÍøÂç¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-3920][CNNVD-201903-080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¹¥»÷Àֳɣ¬£¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Liferay_Portal_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-7961][CNNVD-202003-1260]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

LiferayÊÇÒ»¸ö¿ªÔ´µÄPortal(ÈÏÖ¤)²úÆ·,Ìṩ¶Ô¶à¸ö×ÔÁ¦ÏµÍ³µÄÄÚÈݼ¯³É,ΪÆóÒµÐÅÏ¢¡¢Á÷³ÌµÈµÄÕûºÏÌṩÁËÒ»Ì×ÍêÕûµÄ½â¾ö¼Æ»®,ºÍÆäËûÉÌÒµ²úÆ·Ïà±È,LiferayÓÐ×ÅÐí¶àÓÅÁ¼µÄÌØÕ÷,²¢ÇÒÃâ·Ñ,ÔÚÈ«Çò¶¼Óн϶àÓû§¡£¡£¡£¡£¡£¡£ÔÚLiferay6.1.x-7.2.x°æ±¾Öб£´æÍ¨¹ýδÊÚȨ»á¼ûµÄapi½á¹¹jsonÓï¾äµ¼Ö·´ÐòÁл¯Îó²î½ø¶øÖ´Ðй¥»÷Õß´úÂëÏÂÁîµÄÎó²î¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_ajaxaction_ÎļþÉÏ´«Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÖÂÔ¶OAÊÇÒ»Ìװ칫ЭͬÈí¼þ¡£¡£¡£¡£¡£¡£¿ËÈÕ£¬£¬£¬£¬£¬°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐÄ¼à¿Øµ½ÖÂÔ¶OAajaxActionÎļþÉÏ´«Îó²îʹÓôúÂëÅû¶¡£¡£¡£¡£¡£¡£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©ajax½Ó¿Ú±£´æÎ´ÊÚȨ»á¼û£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬣¬£¬£¬£¬¿ÉÔÚÎÞÐèµÇ¼µÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬£¬£¬£¬£¬´Ó¶ø¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£¡£ÖÂÔ¶OA¹Ù·½ÒÑÕë¶Ô¸ÃÎó²îÌṩ²¹¶¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬¸ÃÎó²îʹÓôúÂëÒÑÔÚ»¥ÁªÍøÉϹûÕæÈö²¥¡£¡£¡£¡£¡£¡£°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐÄÌáÐÑÖÂÔ¶OAÓû§¾¡¿ì½ÓÄÉÇå¾²²½·¥×èÖ¹Îó²î¹¥»÷¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_δÊÚȨ»á¼û

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÖÂÔ¶OAA8ÊÇÒ»¿îÊ¢ÐеÄЭͬÖÎÀíÈí¼þ£¬£¬£¬£¬£¬ÔÚ¸÷ÖС¢´óÐÍÆóÒµ»ú¹¹ÖÐÆÕ±éʹÓᣡ£¡£¡£¡£¡£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©½Ó¿ÚÄܱ»Î´ÊÚȨ»á¼û£¬£¬£¬£¬£¬²¢ÇÒ²¿·Öº¯Êý±£´æ¹ýÂËȱ·¦£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬣¬£¬£¬£¬¿ÉÔÚδÊÚȨµÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬£¬£¬£¬£¬´Ó¶ø¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20210119