ÿÖÜÉý¼¶Í¨¸æ-2022-07-05

Ðû²¼Ê±¼ä 2022-07-05

ÐÂÔöʼþ


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_fastjson_1.2.60_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃfastjsonJSON·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ£¬ÊÔͼͨ¹ý´«È뾫ÐĽṹµÄ¶ñÒâ´úÂë»òÃüÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£

¸üÐÂʱ¼ä£º

20220705

 

ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_fastjson_1.2.67_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjson´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20220705

 

ʼþÃû³Æ£º

TCP_ľÂí_BeamMiner_ÍÚ¿óÀÖ³É(BEAM)

Äþ¾²ÀàÐÍ£º

Èä³æ²¡¶¾

ʼþÃèÊö:

¼ì²âµ½¿ó»úÏò¿ó³ØÌá½»ÍÚ¿ó½á¹ûµÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBeamMinerÍÚ¿óľÂí¡£BeamMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£BeamÊÇ»ùÓÚMimbleWimbleЭÒ鿪·¢µÄ¼ÓÃÜ»õ±Ò£¬¾ßÓÐÇ¿Òþ˽ÐÔ¡¢Ìæ´úÐÔºÍÀ©Õ¹ÐÔ¡£BeamËùÓн»Ò׶¼Ä¬ÈÏÊÇ˽ÃܵÄ¡£Ð½ڵã¼ÓÈëÍøÂçÎÞÐèͬ²½Õû¸ö½»Ò×ÀúÊ·£¬¿ÉÒÔÇëÇóͬ²½Ö»°üÂÞϵͳ״̬µÄѹËõÀúÊ·¼Ç¼ºÍÇø¿éÍ·£¬´Ó¶øʵÏÖ¿ìËÙͬ²½¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_ºóÃÅ_Win32.WarZoneRat_Á¬½Ó(ɨÃè)

Äþ¾²ÀàÐÍ£º

Äþ¾²É¨Ãè

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚ¶ÔÄ¿µÄIPÖ÷»ú½øÐÐɨÃè¡£WarZoneRatÊÇÒ»¸ö¹¦Ð§Ç¿´óµÄÔ¶¿Ø£¬ÔËÐкó¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£±¾Ê¼þ±¨¾¯²»ÊÇÕæʵ¹¥»÷£¬½ö½öÒâζ×ÅÔ´IPÖ÷»úÔÚ¶ÔÄ¿µÄIPÖ÷»ú½øÐÐɨÃè¡£Ô´IPÒ»°ãÊôÓÚShodanɨÃèÖ÷»ú£¬Ä¿µÄIPÊÇ¿Í»§Ö÷»ú¡£Ô´IPÖ÷»úÄ£·ÂWarZoneRatÑù±¾ÏòÄ¿µÄIPÖ÷»ú·¢ËÍÉÏÏß±¨ÎÄ£¬Èç¹ûÊÕµ½ÆÚÍûµÄ·µ»ØÊý¾Ý£¬¼´ÈÏΪĿµÄIPÖ÷»úÉÏÔËÐÐ×ÅGh0st¿ØÖƶË£¬ÊÇWarZoneRatµÄC&C·þÎñ¡£Shodan¾ÍÊÇͨ¹ýÕâÖÖɨÃèÀ´»ñÈ¡¶ñÒâÈí¼þµÄC&C·þÎñÆ÷£¬³ýShodanÍ⣬ÆäËüһЩÍþвÇ鱨¹«Ë¾µÄIPÖ÷»úÒ²ÔÚ½øÐÐ×ÅÕâÖÖɨÃè¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_WordPress-3DPrint-Lite_ÈÎÒâÎļþÉÏ´«

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

WordPress3DPrintLiteVersion1.9.1.4°æ±¾ÖеÄ3dprint-lite-functions.phpÎļþ´æÔÚÎļþÉÏ´«Â©¶´£¬¹¥»÷Õßͨ¹ý½á¹¹ÇëÇó°ü¿ÉÒÔÉÏ´«ÈÎÒâÎļþ»ñÈ¡·þÎñÆ÷ȨÏÞ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Webmin_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2019-12840][CNNVD-201906-632]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWebmin1.910ºÍ¸üÔç°æ±¾ÖеÄupdate.cgiÔÊÐíÔ¶³Ì¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Ö´ÐÐÈÎÒâÃüÁî¡£WebminÊǹ¦Ð§×îÇ¿´óµÄ»ùÓÚWebµÄUnixϵͳ¹ÜÀí¹¤¾ß¡£¹ÜÀíԱͨ¹ýä¯ÀÀÆ÷·ÃÎÊWebminµÄÖÖÖÖ¹ÜÀí¹¦Ð§²¢Íê³ÉÏàÓ¦µÄ¹ÜÀíÐж¯¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_Java·´ÐòÁл¯_CommonsCollections11_ÀûÓÃÁ´¹¥»÷

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃCommonsCollections11µÄJava·´ÐòÁл¯ÀûÓÃÁ´¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£Èô·ÃÎʵÄÓ¦ÓôæÔÚ©¶´JAVA·´ÐòÁл¯Â©¶´ÇÒʹÓÃÁËCommonsCollections3.1-3.2.1£¬¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß£¬Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_URLClassLoaderÔ¶³Ì¼ÓÔضñÒâÀà

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃURLClassLoaderµÄJavaÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_JNDIÔ¶³Ì¼ÓÔضñÒâÀà

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃJNDIµÄlookupÒªÁìÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_Shiro_JNDIÔ¶³Ì¼ÓÔضñÒâÀà

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃShiroJNDIµÄlookupÒªÁìÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Íò»§OA_fileUpload.controller_ÈÎÒâÎļþÉÏ´«Â©¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

Íò»§OA´æÔÚÒ»¸öÈÎÒâÎļþÉÏ´«Â©¶´£¬¹¥»÷Õß¿ÉÒÔͨ¹ýfileUpload.controller½Ó¿ÚÉÏ´«¶ñÒâÎļþ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ͨ´ïOA_update.php_Îļþ°üÂÞ©¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ͨ´ïOAv11.8ÒÔϵİ汾´æÔÚÒ»¸öÎļþ°üÂÞ©¶´¡£¹¥»÷Õß¿ÉÒÔͨ¹ýÀûÓÃPHPµÄ.user.iniÎļþÀ´°üÂÞÆäËû¶ñÒâÎļþÈƹýͨ´ïOAµÄÎļþÉÏ´«ÏÞÖÆ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14060][CNNVD-202006-997]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄoadd.org.apache.xalan.lib.sql.JNDIConnectionPool´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14062][CNNVD-202006-996]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄcom.sun.org.apache.xalan.internal.lib.sql.JNDIConnectionPool´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14195][CNNVD-202006-1070]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄorg.jsecurity.realm.jndi.JndiRealmFactory´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-24750][CNNVD-202009-1066]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄcom.pastdev.httpcomponents.configuration.JndiConfiguration´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Ê¼þ_GitLab_Ô¶³ÌÃüÁîÖ´ÐÐ[CVE-2018-19571][CVE-2018-19585]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

GitLabÊÇÒ»¸öÓÃÓÚ¶ÑÕ»¹ÜÀíϵͳµÄ¿ªÔ´ÏîÄ¿£¬ÆäʹÓÃGit×÷Ϊ´úÂë¹ÜÀí¹¤¾ß£¬¿Éͨ¹ýWeb½çÃæ·ÃÎʹûÈ»»ò˽ÈËÏîÄ¿¡£ÔÚ11.4.7°æ±¾Ö®Ç°£¬¸ÃÏîÄ¿´æÔÚÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¹¥»÷Õ߿ɽṹ¶ñÒâpayloadÒÔ»ñÈ¡·þÎñÆ÷ȨÏÞ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Mitel_MiVoice_Connect_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2022-29499][CNNVD-202204-4387]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ä¿µÄipΪ¹¥»÷Õßip£¬Í¨¹ýÔ´ip´æÔÚÊý¾ÝÑéÖ¤²»ÕýÈ·µÄ©¶´£¬¿ÉÒÔͨ¹ývtest.phpµÄget_url²ÎÊý½øÐе±µØÎļþÀûÓ㬴ӶøʹµÃÔ´ipÏòÄ¿µÄip£¨¹¥»÷Õߣ©·¢ËÍÃô¸ÐÐÅÏ¢£¬»ò·´µ¯shell£¬µ¼Ö½øÒ»²½¹¥»÷¡£MitelMiVoiceConnectÊǼÓÄôóMitelNetworks¹«Ë¾µÄÒ»¿îÓÃÓÚ¼¯ÖйÜÀíMitelNetworksµÄºô½Ð´¦ÖúÍЭ×÷¹¤¾ßµÄÈí¼þ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_СÓãÒ×Á¬ÊÓƵϵͳ_LUA½Å±¾ÅäÖôíÎó_Ô¶³ÌÃüÁîÖ´ÐÐ

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

СÓãÒ×Á¬ÊÓƵ»áÒéϵͳLUA½Å±¾È¨ÏÞ·ÖÅä²»Í×,µ¼ÖÂÈÎÒâÓû§¿ÉÀûÓÃrootȨÏÞÖ´ÐÐÃüÁ¹¥»÷ÕßÀûÓôË©¶´¿ÉÍêÈ«»ñȡϵͳȨÏÞ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÖÐÔ¶÷è÷ë_iAuditµï±¤»ú_get_luser_by_sshport.php_Ô¶³ÌÃüÁîÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ÖÐÔ¶÷è÷ëiAuditµï±¤»úget_luser_by_sshport.phpÎļþ´æÔÚÃüÁîÆ´½Ó£¬¹¥»÷Õßͨ¹ý©¶´¿É»ñÈ¡·þÎñÆ÷ȨÏÞ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÌìÈÚÐÅ_TopApp-LB_enable_tool_debug.php_Ô¶³ÌÃüÁîÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ÌìÈÚÐÅTopSec-LBenable_tool_debug.phpÎļþ´æÔÚÔ¶³ÌÃüÁîÖ´ÐЩ¶´£¬Í¨¹ýÃüÁîÆ´½Ó¹¥»÷Õß¿ÉÒÔÖ´ÐÐÈÎÒâÃüÁî¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶¹ÜÀíϵͳ_sys_user.conf_Õ˺ÅÃÜÂëй©

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö:

ÉîÐÅ·þÓ¦Óý»¸¶¹ÜÀíϵͳÎļþsys_user.conf¿ÉÔÚδÊÚȨµÄÇé¿öÏÂÖ±½Ó·ÃÎÊ£¬µ¼ÖÂÕ˺ÅÃÜÂëй©¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ_download.php_ÈÎÒâÎļþ¶Áȡ©¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳdownload.phpÎļþ´æÔÚÈÎÒâÎļþ¶Áȡ©¶´£¬¹¥»÷Õßͨ¹ý©¶´¿ÉÒÔÏÂÔØ·þÎñÆ÷ÈÎÒâÎļþ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ_login.php_ÃüÁî×¢È멶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ£¨4.5ÒÔÏ°汾£©´æÔÚÒ»¸öÃüÁî×¢È멶´£¬¸Ã©¶´Ô´ÓÚ¶Ô´«ÈëµÄuserPswºÍuserID¹ýÂ˲»ÑϽ÷µ¼Ö£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÌØÖÆÇëÇóÖ´ÐÐÈÎÒâÃüÁî¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ÂÌÃËUTS×ÛºÏÍþв̽Õë_ÐÅϢй¶

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö:

ÂÌÃËUTS×ÛºÏÍþв̽Õëij¸ö½Ó¿Úδ×öÊÚȨµ¼ÖÂδÊÚȨ·ÃÎÊ£¬ÆäÖаüÂÞ²¿ÃÅÕ˺ÅÃÜÂëÐÅÏ¢£¬¹¥»÷Õß¿ÉÀûÓÃÀ´½øÐеǼÈƹý¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_GotoHTTPÔ¶³ÌÁ¬½Ó¹¤¾ßʹÓÃ

Äþ¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ʼþÃèÊö:

GotohttpÊÇÒ»¿îÔ¶³Ì×ÀÃ湤¾ß£¬¿ÉÄÜΪºÚ¿ÍÕýÔÚʹÓá£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Microsoft_Exchange_Server_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-16875][CNNVD-202009-374]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ÓÉÓÚ¶Ôcmdlet²ÎÊýµÄÑéÖ¤²»ÕýÈ·£¬MicrosoftExchange·þÎñÆ÷ÖдæÔÚÔ¶³ÌÖ´ÐдúÂ멶´¡£ÀÖ³ÉÀûÓôË©¶´µÄ¹¥»÷Õß¿ÉÒÔÔÚϵͳÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐÈÎÒâ´úÂë¡£ÀûÓôË©¶´ÐèÒªÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§¾ßÓÐÊܵ½ÍþвµÄÌض¨Exchange½ÇÉ«¡£´ËÄþ¾²¸üÐÂͨ¹ý¸üÕýMicrosoftExchange´¦ÖÃcmdlet²ÎÊýµÄ·½Ê½À´ÐÞ¸´´Ë©¶´¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_CMS-Discuz:X_uc_centerºǫ́´úÂëÖ´ÐÐ

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

Discuz!MLϵͳÖУ¬Í¨¹ýºǫ́ÐÞ¸ÄUcenterÊý¾Ý¿âÁ¬½ÓÐÅÏ¢£¬¿É½«¶ñÒâ´úÂëдÈëconfig/config_ucenter.phpÎļþÖУ¬µ¼Ö´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2019-14540][CNNVD-201909-716]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

JacksonÊǵ±Ç°ÓõıÈÁ¦¹ã·ºµÄ£¬ÓÃÀ´ÐòÁл¯ºÍ·´ÐòÁл¯jsonµÄJava¿ªÔ´¿ò¼Ü¡£ÔÚ2.9.10֮ǰµÄFasterXMLjackson-databindÖÐÓÉÓÚcom.zaxxer.hikari.HikariConfig´¦ÖÃÊý¾ÝÎÊÌ⣬´æÔÚ·´ÐòÁл¯Â©¶´

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_CMS_Discuz!X3.4_ÈÎÒâÎļþɾ³ýÅäºÏinstall¹ý³Ìgetshell

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

Discuz!MLϵͳ°²×°ºóδµÇ½ºǫ́ʱ£¬¿ÉÀûÓÃÎļþɾ³ý©¶´É¾µôinstall.lockÎļþ£¬Èƹý¶Ô°²×°Íê³ÉµÄÅжÏÄܹ»ÔÙ½øÐа²×°µÄ¹ý³Ì£¬È»ºó½«¶ñÒâ´úÂëдÈëÅäÖÃÎļþÖдӶøÖ´ÐÐÈÎÒâ´úÂë¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Eyoucms_1.4.3_ÈÎÒâÎļþдÈë

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

EyouCmsÊÇ»ùÓÚTP5.0¿ò¼ÜΪºËÐÄ¿ª·¢µÄÃâ·Ñ+¿ªÔ´µÄÆóÒµÄÚÈݹÜÀíϵͳ£¬×¨×¢ÆóÒµ½¨Õ¾Óû§ÐèÇóÌṩº£Á¿¸÷ÐÐҵģ°å¡£ÔÚ1.4.3°æ±¾ÒÔÇ°£¬¸ÃϵͳÖдæÔÚÈÎÒâÎļþдÈ멶´£¬¹¥»÷Õ߿ɽṹ¶ñÒâpayload½øÐÐÎļþдÈë²Ù×÷¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_ľÂíºóÃÅ_Covenant_ÐÄÌø°ü_Á¬½ÓC2·þÎñÆ÷

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö:

CovenantÊÇÒ»¸ö.NET¿ª·¢µÄC2(commandandcontrol)¿ò¼Ü£¬Ê¹ÓÃ.NETCoreµÄ¿ª·¢»·¾³£¬²»½öÖ§³ÖLinux£¬MacOSºÍWindows£¬»¹Ö§³ÖdockerÈÝÆ÷¡£CovenantÖ§³Ö¶¯Ì¬±àÒ룬Äܹ»½«ÊäÈëµÄC#´úÂëÉÏ´«ÖÁC2Server£¬»ñµÃ±àÒëºóµÄÎļþ²¢Ê¹ÓÃAssembly.Load()´ÓÄÚ´æ½øÐмÓÔØ¡£¸Ãʼþ±íÃ÷£¬CovenantµÄÉú³ÉÎïGruntsÕýÔÚÀûÓÃÐÄÌø±¨ÎÄÓëC2·þÎñÆ÷±£³ÖÁ¬½Ó¡£

¸üÐÂʱ¼ä£º

20220705


ÐÞ¸Äʼþ

 

ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_fastjson_1.2.47_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.47ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_¿ÉÒÉÐÐΪ_fastjson_·´ÐòÁл¯¼ÓÔØBCEL

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.24ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_ºóÃÅ_Linux.DDoS.Gafgyt_¿ØÖÆÃüÁî

Äþ¾²ÀàÐÍ£º

ÆäËûʼþ

ʼþÃèÊö:

¼ì²âµ½Gafgyt·þÎñÆ÷ÊÔͼ·¢ËÍÃüÁî¸øGafgyt£¬Ä¿µÄIPÖ÷»ú±»Ö²ÈëÁËGafgyt¡£DDoS.GafgytÊÇÒ»¸öÀàLinuxƽ̨ϵĽ©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±ê»úÆ÷ÌᳫDDoS¹¥»÷¡£¶ÔÖ¸¶¨Ä¿±êÖ÷»úÌᳫDDoS¹¥»÷¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_fastjson_1.2.45_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2017-18349]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.24ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_fastjson_1.2.62_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃfastjsonJSON·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´¶ÔÄ¿µÄIPÖ÷»ú½øÐй¥»÷µÄÐÐΪ£¬ÊÔͼͨ¹ý´«È뾫ÐĽṹµÄ¶ñÒâ´úÂë»òÃüÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_ͨÓÃ_Ŀ¼´©Ô½Â©¶´[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʵÑé¶ÔÄ¿µÄIPÖ÷»ú½øÐÐĿ¼´©Ô½Â©¶´¹¥»÷ʵÑéµÄÐÐΪ¡£Ä¿Â¼´©Ô½Â©¶´ÄÜʹ¹¥»÷ÕßÈƹýWeb·þÎñÆ÷µÄ·ÃÎÊÏÞÖÆ£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬ÈÎÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£´Ë¹æÔòÊÇÒ»ÌõͨÓùæÔò£¬ÆäËû©¶´£¨ÉõÖÁһЩ0day©¶´£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´Ëʼþ±¨¾¯¡£ÓÉÓÚÕý³£ÒµÎñÖÐÒ»°ã²»»á·¢Éú´ËʼþÌØÕ÷µÄÁ÷Á¿£¬ËùÒÔÐèÒªÖصã¹Ø×¢¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß·ÃÎÊÃô¸ÐÎļþ¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_ͨ´ïOA_ÈÎÒâÎļþÉÏ´«/Îļþ°üÂÞ©¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö:

ͨ´ïOAÊÇÒ»Ìװ칫ϵͳ¡£ÓÉÓÚͨ´ïOAÖдæÔÚµÄÁ½Ã¶Â©¶´(ÎļþÉÏ´«Â©¶´£¬Îļþ°üÂÞ©¶´)£¬¹¥»÷Õß¿Éͨ¹ýÕâÁ½Ã¶Â©¶´ÊµÏÖÔ¶³ÌÃüÁîÖ´ÐС£/ispirit/im/upload.php´æÔÚÈƹýµÇ¼(ÈÎÒâÎļþÉÏ´«Â©¶´)£¬½áºÏgateway.php´¦´æÔÚµÄÎļþ°üÂÞ©¶´£¬×îÖÕµ¼ÖÂgetshell¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_¿ÉÒÉÐÐΪ_Fastjson_dnslog̽²â

Äþ¾²ÀàÐÍ£º

Äþ¾²Éó¼Æ

ʼþÃèÊö:

¼ì²âµ½Ô´ipÕýÔÚÀûÓÃdnslog̽²âÖ÷»úºó¶ËÊÇ·ñÊÇfastjson£»

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

HTTP_¿ÉÒÉÐÐΪ_Fastjson©¶´_±àÂëÀûÓÃ

Äþ¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ʼþÃèÊö:

FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£fastjson¿É½ÓÊܲ¢½âÎöhex±àÂëÄÚÈÝ£¬Òò´Ë¹¥»÷Õß¿ÉÀûÓÃhex±àÂëÈƹý¼ì²âÉ豸¡£

¸üÐÂʱ¼ä£º

20220705


ʼþÃû³Æ£º

TCP_½©Ê¬ÍøÂç_BlackMoon_Á¬½Ó

Äþ¾²ÀàÐÍ£º

ÆäËûʼþ

ʼþÃèÊö:

¼ì²âµ½BlackMoonÔ¶¿ØÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçBlackMoon¡£BlackMoonÖ÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±êÌᳫDDoS¹¥»÷£¬Í¨¹ý¹ØÁª·ÖÎö·¢ÏÖ£¬¸ÃBlackMoon½©Ê¬ÍøÂçÁ÷´«·½Ê½Ö®Ò»ÊǽèÖú¶ÀÀÇ£¨Rovnix£©½©Ê¬ÍøÂç½øÐÐÁ÷´«¡£¶ÀÀǽ©Ê¬ÍøÂçͨ¹ý´ø¶¾¼¤»î¹¤¾ß£¨¿ñ·ç¼¤»î¡¢Ð¡Âí¼¤»î¡¢KMSµÈ£©½øÐÐÁ÷´«£¬³£±»ÓÃÀ´Íƹ㲡¶¾ºÍÁ÷Ã¥Èí¼þ¡£

¸üÐÂʱ¼ä£º

20220705