ÐÅÏ¢Äþ¾²Öܱ¨-2020ÄêµÚ37ÖÜ

Ðû²¼Ê±¼ä 2020-09-14

> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2020Äê09ÔÂ07ÈÕÖÁ09ÔÂ13ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´57¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇSAP Solution ManagerÑéÖ¤¼ì²éȱʧ©¶´£»Tenda AC18 Router´úÂëÖ´ÐЩ¶´£»Android mediaframework CVE-2020-0245´úÂëÖ´ÐЩ¶´£»Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´£»Project Worlds Car Rental Management SystemÈÎÒâÎļþÉÏ´«Â©¶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇWhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸ö©¶´£¬ÏÖÒÑÐÞ¸´£»ÆôÓÃHyper-VµÄWin10ϵͳÖдæÔÚ0day£¬¿É´´½¨Îļþ£»Î¢ÈíÐû²¼9Ô·ÝÄþ¾²¸üУ¬×ܼÆÐÞ¸´129¸ö©¶´£»AdobeÐû²¼Äþ¾²¸üУ¬ÐÞ¸´¶à¿î²úÎïÖеÄ12¸ö©¶´£»CodeMeterÖдæÔÚÑÏÖØ©¶´£¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£


ÖØÒªÄþ¾²Â©¶´Áбí


1.SAP Solution ManagerÑéÖ¤¼ì²éȱʧ©¶´


SAP Solution Manager´æÔÚÑéÖ¤¼ì²éȱʧ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬Î´ÊÚȨ¿ØÖÆ·ÃÎÊÓ¦Óá£

https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=557449700


2. Tenda AC18 Router´úÂëÖ´ÐЩ¶´


Tenda AC18 Router /usr/lib/lua/lua/ngx_authserver/ngx_wdasÖеÄlogincheck£¨£©º¯ÊýµÄÉí·ÝÑéÖ¤´¦ÖôæÔÚ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬Î´ÊÚȨִÐÐÈÎÒâ´úÂë¡£

https://www.tendacn.com/en/product/AC18.html


3.Android mediaframework CVE-2020-0245´úÂëÖ´ÐЩ¶´


Android mediaframework´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÎļþÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÕßÒÔϵͳÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://source.android.com/security/bulletin/2020-09-01


4. Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´


Microsoft ChakraCore´æÔÚÄÚ´æÆÆ»µÂ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÕßÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2020-1172


5. Project Worlds Car Rental Management SystemÈÎÒâÎļþÉÏ´«Â©¶´


Project Worlds Car Rental Management System³µÍ¼ÏñÉÏ´«×é¼þ´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÉÏ´«ÈÎÒâÎļþ£¬²¢Ö´ÐÐÈÎÒâ´úÂë¡£


https://github.com/hyd3sec/CarRentalManagement-Unauth-RCE-WebApp


> ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢WhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸ö©¶´£¬ÏÖÒÑÐÞ¸´


1.jpg


WhatsAppÅû¶ÆäÓ¦ÓÃÖдæÔÚµÄ6¸ö©¶´£¬ÏÖÒÑÐÞ¸´¡£´Ë´ÎÐÞ¸´µÄ©¶´ÖнÏΪÑÏÖصÄΪ¶ÑջдÈëÒç³ö©¶´£¨CVE-2020-1894£©£¬¿Éµ¼ÖÂÈÎÒâ´úÂëÖ´ÐУ¬32λÉ豸´æÔÚµÄдÒç³ö©¶´£¨CVE-2020-1891£©ºÍURLÑéÖ¤ÎÊÌ⣨CVE-2020-1890£©£¬¿Éµ¼ÖºڿÍÔÚûÓÐÓëÓû§½»»¥µÄÇé¿öÏ´ӷ¢¼þÈ˵ÄURL¼ÓÔØͼÏñ¡£ÆäËû©¶´ÎªÄþ¾²¼ì²âÈƹýÎÊÌ⣨CVE-2020-1889µÄ£©¡¢»º³åÇøÒç³ö©¶´£¨CVE-2020-1886£©ºÍÊäÈëÑéÖ¤ÎÊÌ⣨CVE-2019-11928£©¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/107950/security/whatsapp-undisclosed-flaws.html


2¡¢ÆôÓÃHyper-VµÄWin10ϵͳÖдæÔÚ0day£¬¿É´´½¨Îļþ


2.jpg


ÄæÏò¹¤³ÌʦJonas LykkegaardÔÚÆôÓÃÁËHyper-VµÄWindows 10ϵͳÖз¢ÏÖÁËÒ»¸öеÄ0day£¬¸Ã©¶´¿É±»ÀûÓÃÔÚÊÜÓ°ÏìµÄ²Ù×÷ϵͳÖд´½¨Îļþ¡£ÔÚHyper-V´¦Óڻ״̬ʱ£¬¹¥»÷Õß¿ÉÀûÓø鶴ÔÚ\ system32Öд´½¨Îļþ£¬¶øÇÒ²»ÐèÒª½øÐÐÌáȨ¡£ÓÉÓÚÎļþµÄ´´½¨ÕßÒ²ÊÇËùÓÐÕߣ¬Òò´Ë¹¥»÷Õß¿ÉÒÔʹÓøÃÎļþ½«¶ñÒâ´úÂë×¢ÈëϵͳÄÚ²¿£¬²¢ÔÚÐèҪʱʹÓÃÌáÉýµÄȨÏÞÖ´ÐиöñÒâ´úÂë¡£CERT/CC©¶´·ÖÎöʦWill Dormann  ÌåÏÖ£¬¹¥»÷Õß¼¸ºõ²»ÐèÒª×öÈκÎŬÁ¦±ã¿ÉÒÔÀûÓø鶴¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/windows-10-sandbox-activation-enables-zero-day-vulnerability/


3¡¢Î¢ÈíÐû²¼9Ô·ÝÄþ¾²¸üУ¬×ܼÆÐÞ¸´129¸ö©¶´


3.jpg


΢ÈíÐû²¼ÁË9Ô·ÝÄþ¾²¸üУ¬×ܼÆÐÞ¸´129¸ö©¶´£¬ÆäÖаüÂÞ23¸öÑÏÖØ©¶´¡£¾¡¹Ü´Ë´Î¸üÐÂÖв¢Ã»ÓÐ0day£¬µ«ÈÔÓÐÐí¶à©¶´¿É±»Ô¶³ÌÀûÓᣴ˴ÎÐÞ¸´µÄ¾ÍΪÑÏÖصÄÈý¸ö©¶´·Ö±ðΪMicrosoft ExchangeÄÚ´æËð»µÂ©¶´£¨CVE-2020-16875£©£¬Ô¶³Ì¹¥»÷ÕßÀûÓø鶴¿ÉÒÔ½öͨ¹ýÏòExchange·þÎñÆ÷·¢ËÍÌØÖƵç×ÓÓʼþÔ¶³ÌÖ´ÐдúÂ룬WindowsÔ¶³ÌÖ´ÐдúÂëµÄMicrosoft COM©¶´£¨CVE-2020-0922£©£¬¿ÉÒÔͨ¹ýÓÕʹÓû§·ÃÎÊ´øÓжñÒâJavaScriptµÄÕ¾µãÀ´¼ÓÒÔÀûÓã¬ÒÔ¼°WindowsÎı¾·þÎñÄ£¿éÔ¶³ÌÖ´ÐдúÂ멶´£¨CVE-2020-0908£©£¬¿ÉÒÔͨ¹ýÓÕʹÓû§·ÃÎÊ°üÂÞ¶ñÒâ¹ã¸æµÄÍøÕ¾À´¼ÓÒÔÀûÓá£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-september-2020-patch-tuesday-fixes-129-vulnerabilities/


4¡¢AdobeÐû²¼Äþ¾²¸üУ¬ÐÞ¸´¶à¿î²úÎïÖеÄ12¸ö©¶´


4.jpg


AdobeÐû²¼Äþ¾²¸üУ¬ÒÑÐÞ¸´Ó°ÏìÆäAdobe InDesign¡¢Adobe FramemakerºÍAdobe Experience Manager²úÎïÖеÄ12¸ö´úÂëÖ´ÐЩ¶´¡£´Ë´Î¸üÐÂÐÞ¸´ÁËAdobe InDesignÖÐÒòÄÚ´æË𻵵¼ÖµÄÈÎÒâ´úÂëÖ´ÐЩ¶´£¨CVE-2020-9727¡¢CVE-2020-9728¡¢CVE-2020-9729¡¢CVE-2020-9730ºÍCVE-2020-9731£©£¬FramemakerÖÐÔ½½ç¶ÁÈ¡µ¼ÖµĴúÂëÖ´ÐЩ¶´£¨CVE-2020-9726£©ºÍ»ùÓÚ¶ÑÕ»µÄ»º³åÇøÒç³öµÄ´úÂëÖ´ÐЩ¶´£¨CVE-2020-9725 £©£¬ÒÔ¼°Experience ManagerÖеĶà¸öXSS©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-vulnerabilities-in-indesign-and-framemaker/


5¡¢CodeMeterÖдæÔÚÑÏÖØ©¶´£¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷


5.jpg


Claroty·¢ÏÖÎ÷ÃÅ×ӵȶ¥¼¶ICS¹©Ó¦ÉÌʹÓõĵÚÈý·½¹¤Òµ×é¼þCodeMeterÖдæÔÚ6¸öÑÏÖصÄ©¶´£¬»ò½«µ¼ÖÂOT¹©Ó¦Á´¹¥»÷£¬ÕâЩ©¶´µÄCVSSÆÀ·Ö¾ùΪ10.0¡£CISAÌåÏÖ£¬¹¥»÷ÕßÀÖ³ÉÀûÓÃÕâЩ©¶´ºó¿É¸ü¸ÄºÍαÔìÐí¿ÉÖ¤Îļþ£¬µ¼Ö¾ܾø·þÎñÇé¿ö£¬Ç±ÔÚµØʵÏÖÔ¶³ÌÖ´ÐдúÂë¡¢¶ÁÈ¡¶ÑÊý¾Ý²¢×èÖ¹ÒÀÀµCodeMeterµÄµÚÈý·½Èí¼þµÄÕý³£ÔËÐС£ÆäÖÐ×îÑÏÖصÄ©¶´¿Éͨ¹ýÆÆ»µCodeMeterͨÐÅЭÒéºÍÄÚ²¿APÒÔIÔ¶³ÌÖ´ÐдúÂ룬ʵÏÖICSϵͳµÄÍêÈ«½Ó¹Ü¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/critical-bugs-enable-ot-supply/