ÿÖÜÉý¼¶Í¨¸æ-2021-09-14
Ðû²¼Ê±¼ä 2021-09-15ÐÂÔöʼþ
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Cockpit_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-35131][CNNVD-202101-450] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | CockpitÊÇÒ»¸ö½»»¥Ê½·þÎñÆ÷¹ÜÀí½çÃæ¡£Cockpit0.6.1֮ǰµÄ°æ±¾´æÔÚÄþ¾²Â©¶´£¬¸Ã©¶´ÔÊÐí¹¥»÷Õß×¢Èë×Ô½ç˵PHP´úÂ룬²¢ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_V-SOL_¼ÒÍ¥ÍøÂçÉ豸ÃüÁîÖ´ÐЩ¶´[CVE-2020-8958][CNNVD-202007-1148] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÉ豸ÕýÔÚÀûÓÃV-SOL¼ÒÍ¥ÍøÂçÉ豸ÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÉ豸¡£¸ÃÉ豸Ò×Êܹ¥»÷µÄ¶ËµãÊÇÉ豸¹ÜÀíÃÅ»§ÉÏ¿ÉÓõġ°PINGÕï¶Ï¡±¹¦Ð§µÄÒ»²¿ÃÅ£¬Î»ÓÚ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Confluence_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2021-26084][CNNVD-202108-2421] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | AtlassianConfluenceÊÇAtlassian¹«Ë¾³öÆ·µÄרҵµÄÆóҵ֪ʶ¹ÜÀíÓëÐͬÈí¼þ£¬¿ÉÓÃÓÚ¹¹½¨ÆóÒµÎÄ¿âµÈ¡£ConfluenceServerºÍConfluenceDataCenter(<6.13.23¡¢<7.11.6¡¢<7.12.5¡¢<7.4.11°æ±¾)ÉÏ´æÔÚÒ»¸öOGNL×¢È멶´£¬ÔÊÐí¾¹ýÉí·ÝÑéÖ¤»òÔÚijЩÇé¿öÏÂδÊÚȨµÄ¹¥»÷Õߣ¬ÔÚConfluenceServer»òConfluenceDataCenterʵÀýÉÏÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_JasperReports_Ŀ¼±éÀú©¶´[CVE-2018-18809][CNNVD-201903-233] |
Äþ¾²ÀàÐÍ£º | CGI¹¥»÷ |
ʼþÃèÊö£º | TIBCOJasperReports¿â´æÔÚÒ»¸öĿ¼±éÀú©¶´£¬ÔÊÐí¾¹ýÔ¶³ÌÉí·ÝÑéÖ¤µÄ¹¥»÷Õß±éÀúϵͳÉϵÄĿ¼¡£¹¥»÷Õß¿ÉÒÔͨ¹ý·¢ËÍ°üÂÞ../µÄÌØÖÆÇëÇóÀ´»ñÈ¡Ö÷»úϵͳµÄÏêϸÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Apache_Solr_ÈÎÒâÎļþ¶Áȡ©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬Ê¹ÓÃJavaÓïÑÔ¿ª·¢¡£ApacheSolrµÄijЩ¹¦Ð§´æÔÚ¹ýÂ˲»Ñϸñ£¬ÔÚApacheSolr먦ÆôÈÏÖ¤µÄÇé¿öÏ£¬¹¥»÷Õß¿ÉÒÔÀûÓÃConfigAPI´ò¿ªrequestDispatcher.requestParsers.enableRemoteStreaming¿ª¹Ø£¬²¢×îÖÕÔì³ÉSSRF»òÎļþ¶Áȡ©¶´¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Hongdian-H8922_ÃüÁîÖ´ÐÐ[CVE-2021-28150][CNNVD-202105-280] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | HongdianH8922ÊÇÖйúHongdian¹«Ë¾µÄÒ»¸ö·ÓÉÆ÷¡£HongdianH89223.0.5devices´æÔÚÄþ¾²Â©¶´£¬¸Ã©¶´ÔÊÐí·ÇÌØȨÓû§Í¨¹ýĬÈÏÓû§½øÈëºǫִ́ÐÐÈÎÒâϵͳָÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Mimosa-Routers_Ô¶³ÌÃüÁîÖ´ÐÐ[CVE-2020-14003] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | MimosaÉ豸/·ÓÉÆ÷ÖеÄ©¶´Í¨¹ýÔÚ·ÓÉÆ÷Web½çÃæÖÐÖ´ÐжñÒâ´úÂ룬µ¼ÖÂÉí·ÝÑéÖ¤Èƹý/ȨÏÞÌáÉý£¬Íþв·þÎñÆ÷Ö÷»úÄþ¾²¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_SMCÍøÂç»á»°_ÃüÁî×¢Èë[CVE-2020-13766] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | SMCÍøÂçÌṩÐí¶àÍøÂç²úÎÆäÖÐÖ®Ò»Êǵ÷Öƽâµ÷Æ÷¡£SMCµÄµ÷Öƽâµ÷Æ÷ÓÃÓÚÔÚÍøÂçÖÐÒÑÁ¬½ÓµÄÉ豸֮¼ä´«ÊäÊý¾Ý¡£SMCÍøÂçµ÷Öƽâµ÷Æ÷·Óɻص÷ÖеÄ©¶´ÔÊÐí¹¥»÷Õß×¢Èë´úÂë/»á»°²¢»ñÈ¡·´Ïòroot-shell,¿ØÖÆ·þÎñÆ÷Ö÷»ú¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Drupal-core_¶ñÒâÎļþÉÏ´«[CVE-2020-13671][CNNVD-202011-1698] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | DrupalcoreûÓÐÕýÈ·µØ´¦ÖÃÉÏ´«ÎļþÖеÄijЩÎļþÃû£¬Õâ¿ÉÄܵ¼ÖÂÎļþ±»½âÊÍΪ²»ÕýÈ·µÄÀ©Õ¹Ãû£¬²¢±»ÓÃ×÷´íÎóµÄMIMEÀàÐÍ£¬ÔÚijЩÌض¨µÄÅäÖÃÏ£¬¿ÉÄܻᱻ¿´³Éphp½âÎö£¬µ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Netsweeper_´úÂëÖ´ÐÐ[CVE-2020-13167][CNNVD-202005-974] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | NetsweeperÊǼÓÄôóNetsweeper¹«Ë¾µÄÒ»Ì×WebÄÚÈݹýÂ˽â¾ö·½°¸¡£Netsweeper6.4.3¼°Ö®Ç°°æ±¾ÖеÄ/webadmin/tools/unixlogin.php½Å±¾´æÔÚÄþ¾²Â©¶´¡£¹¥»÷Õß¿ÉÀûÓø鶴ִÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Wavlink-Unauthenticated_Ô¶³ÌÃüÁîÖ´ÐÐ[CVE-2020-13117][CNNVD-202102-930] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | WavlinkWN575A4ºÍWN579X3É豸ÔÊÐíδ¾ÑéÖ¤µÄÔ¶³ÌÓû§Í¨¹ýµÇ¼ÇëÇóÖеÄÒªº¦²ÎÊý×¢ÈëÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_IQrouter-3.3.1-·À»ðǽ_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-11963][CNNVD-202004-1801] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | EvenrouteIQrouterÊÇÃÀ¹úEvenroute¹«Ë¾µÄÒ»¿îÖÇÄÜ·ÓÉÆ÷¡£EvenrouteIQrouter3.3.1¼°Ö®Ç°°æ±¾ÖеÄWebÃæ°å´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´¡£¹¥»÷Õß¿ÉÀûÓø鶴»ñÈ¡rootȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Wavlink_´úÂëÖ´ÐÐ[CVE-2020-10971][CNNVD-202005-271] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | WavlinkWAVLINKWL-WN579G3µÈ¶¼ÊÇÖйúî£Òò¿Æ¼¼£¨Wavlink£©¹«Ë¾µÄÒ»¿îÎÞÏßÍøÂçÐźÅÀ©Õ¹Æ÷¡£WAVLINKWL-WN579G3M79X3.V5030.180719°æ±¾¡¢WL-WN575A3RPT75A3.V4300.180801°æ±¾ºÍWL-WN530HG4M30HG4.V5030.191116°æ±¾ÖдæÔÚÊäÈëÑéÖ¤´íÎ󩶴¡£¹¥»÷Õ߿ɽèÖúÌØÖƵÄPOSTÇëÇóÀûÓø鶴ִÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Cisco_DCNM_ÃüÁî×¢È멶´[CVE-2019-15978][CNNVD-202001-029] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | CiscoDataCenterNetworkManagerÊÇÊý¾ÝÖÐÐĵÄÍøÂç¹ÜÀí½â¾ö·½°¸¡£CiscoDCNMµÄRESTAPIÔÚ½âÎöijЩ½á¹¹µÄÇëÇóʱ£¬ÔÚʵÏÖÖдæÔÚÄþ¾²Â©¶´£¬¿ÉÄÜÔÊÐíͨ¹ýÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßÔÚϲã²Ù×÷ϵͳÉÏ×¢ÈëÈÎÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Confluence_Îļþ¶Áȡ©¶´[CVE-2019-3394][CNNVD-201908-2216] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ConfluenceServerºÍDataCenterÔÚÒ³Ãæµ¼³ö¹¦Ð§ÖдæÔÚµ±µØÎļþ鶩¶´£º¾ßÓС°Ìí¼ÓÒ³Ã桱¿Õ¼äȨÏÞµÄÔ¶³Ì¹¥»÷Õߣ¬Äܹ»¶ÁÈ¡/confluence/WEB-INF/Ŀ¼ÏµÄÈÎÒâÎļþ¡£¸ÃĿ¼¿ÉÄÜ°üÂÞÓÃÓÚÓëÆäËû·þÎñ¼¯³ÉµÄÅäÖÃÎļþ£¬¿ÉÄÜ»áй©ÈÏ֤ƾ¾Ý£¬ÀýÈçLDAPÈÏ֤ƾ¾Ý»òÆäËûÃô¸ÐÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Apache_Solr_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2017-12629][CNNVD-201710-501] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃApacheSolrsolr.RunExecutableListenerÔ¶³Ì´úÂëÖ´ÐЩ¶´¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñÆ÷¡£SolrʹÓÃJavaÓïÑÔ¿ª·¢£¬Ö÷Òª»ùÓÚHTTPºÍApacheLuceneʵÏÖ¡£ApacheSolr7.1.0֮ǰ°æ±¾´æÔÚÒ»¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¸Ã©¶´Ô´ÓÚsolr.RunExecutableListenerÀà´æÔÚÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¹¥»÷ÕßÏòÍøÕ¾·¢Ë;«ÐĽṹµÄ¹¥»÷payload£¬ÊµÑé½øÐÐÈÎÒâÎļþ¶ÁÈ¡£¬ÇÔÈ¡Ãô¸ÐÐÅÏ¢½ø¶ø¿ØÖÆ·þÎñÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_VMware_fixesÔ¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-3956][CNNVD-202005-985] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÉ豸ÀûÓÃVMware_fixesÔ¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÉ豸¡£¸Ã©¶´ÊÇÒ»¸ö´úÂë×¢ÈëÎÊÌ⣬¾¹ýÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÀûÓø鶴ÏòvCloudDirector·¢ËͶñÒâÁ÷Á¿£¬´Ó¶øÔÊÐíÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_NIUSHOPµçÉÌϵͳ_ÎļþÉÏ´«Â©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | NIUSHOP¿ªÔ´É̳Çϵͳ£¨V2.3£©´æÔÚÈÎÒâÎļþÉÏ´«Â©¶´£¬ÀûÓúó¿ÉÔ¶³ÌÖ´ÐÐÃüÁî¡£NIUSHOPϵͳµÄÉÌÆ·¹æ¸ñͼƬÉÏ´«´¦½ö¶ÔÎļþµÄMIME×öÁ˼ì²â£¬Î´¶ÔÉÏ´«Îļþ½øÐкó׺ÃûµÄ¼ì²â¼°ÖØÃüÃû£¬¹¥»÷Õß¿ÉÒÔÈƹýÉÏ´«¿ØÖÆ£»ÇÒ¸ÃÉÏ´«µã¶ÔÎļþ×ö¼ì²âºó´¦Öò»ÍêÉÆ£¬Î´¶Ô¼ì²â²»Í¨¹ýµÄÎļþ½øÐÐɾ³ý»òÏàÓ¦´¦Ö㬶ÔÉÏ´«ÎļþµÄÖØÃüÃû´¦ÖùýÓÚ¼òµ¥£¬¿Éͨ¹ý±¬ÆƲ³öÖØÃüÃûµÄÎļþÃû²¢½øÐзÃÎÊÀûÓᣠ|
¸üÐÂʱ¼ä£º | 20210914 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | TCP_ľÂí_CPUMiner_ʵÑéÁ¬½Ó¿ó³Ø_¿ó»ú¹ÒºÅ(BTC/LTC) |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | ¼ì²âµ½ÍÚ¿óľÂíÊÔͼÁ¬½Ó¿ó³Ø½øÐпó»ú¹ÒºÅµÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_TP-Link_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2020-9374][CNNVD-202002-1132] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ÔÚTP-LinkTL-WR849N0.9.14.16É豸ÉÏ£¬µ±¹¥»÷Õ߽ṹ¶ñÒâÄÚÈÝ·¢Ë͵½Ãæ°åµÄtraceroute¹¦Ð§Ê±£¬¿ÉÒÔÀûÓÃÕï¶ÏÇøÓòʵÏÖÔ¶³ÌÃüÁîÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Belkin_LINKSYS_RE6500_ÃüÁî×¢È멶´[CVE-2020-35713][CNNVD-202012-1569] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | BelkinLINKSYSRE6500ÊÇÃÀ¹úBelkin¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£BelkinLINKSYSRE6500devices1.0.012.001֮ǰ°æ±¾´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´£¬¸Ã©¶´ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÀûÓø鶴ͨ¹ýshellÔª×Ö·ûÔÚgoformsetSysAdmÒ³ÃæÉÏÖ´ÐÐÈÎÒâÃüÁî»òÉèÖÃÐÂÃÜÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_TendaAC9_ÃüÁî×¢È멶´[CVE-2019-5071][CNNVD-201911-1255] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | TendaAC9ÊÇÖйúÌڴTenda£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£TendaAC9RouterAC1200SmartDual-BandGigabitWiFiRoute£¨AC9V1.0FirmwareV15.03.05.16multiTRUºÍV15.03.05.14en£©ÖеÄ/goform/WanParameterSetting¹¦Ð§´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´¡£¹¥»÷Õ߿ɽèÖúÌØÖƵÄHTTPPOSTÇëÇóÀûÓø鶴ִÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ijӦÓÃÍø¹Øϵͳ_Ô¶³ÌÃüÁîÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¸Ã©¶´Í¨¹ýÍø¹Øϵͳ/cgi-bin/pingok.cgiÒÔ¼°/cgi-bin/pingtools.cgi½Ó¿Ú½øÐÐÃüÁîÖ´ÐУ¬½«¶ñÒâÃüÁîͨ¹ýpostÇëÇó×¢Èëµ½ipaddr²ÎÊýÖС£ |
¸üÐÂʱ¼ä£º | 20210914 |