ÿÖÜÉý¼¶Í¨¸æ-2023-01-03
Ðû²¼Ê±¼ä 2023-01-03
ʼþÃû³Æ£º | TCP_ľÂíºóÃÅ_SparkRat_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½SparkRatÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËSparkRat¡£SparkRatÊÇÒ»¸öGo±àдµÄ£¬ÍøÒ³UI¡¢¿çƽ̨ÒÔ¼°¶à¹¦Ð§µÄÔ¶³Ì¿ØÖƺͼà¿Ø¹¤¾ß£¬¿ÉÒÔËæʱËæµØ¼à¿ØºÍ¿ØÖÆËùÓÐÉ豸¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_ejs_Ä£°å×¢Èë_´úÂëÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ö÷»úÕýÔÚÔâÊÜejsÄ£°å×¢Èë¹¥»÷£¬Node.jsejsÄ£¿é¿ÉÄÜÔÊÐíÔ¶³Ì¹¥»÷ÕßÔÚϵͳÉÏÖ´ÐÐÈÎÒâ´úÂ룬ÕâÊÇÓÉÉèÖÃ[¼ì²ìÑ¡Ïî][Êä³öº¯ÊýÃû³Æ]ÖеķþÎñÆ÷¶ËÄ£°å×¢ÈëȱÏÝÒýÆðµÄ¡£Í¨¹ý·¢ËÍÌØÖƵÄHTTPÇëÇóÒÔʹÓÃÈÎÒâOSÃüÁîÁýÕÖoutputFunctionNameÑ¡Ï¹¥»÷Õß¿ÉÒÔÀûÓôË©¶´ÔÚϵͳÉÏÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_Éó¼Æʼþ_Nacos_Ãô¸ÐÒ³Ãæ·ÃÎÊ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Éó¼Æ |
ʼþÃèÊö£º | ¼ì²âµ½µ±Ç°Ö÷»úÕýÔÚÔâÊÜnacosÃô¸ÐÒ³Ãæ·ÃÎÊ£¬NacosÊÇDynamicNamingandConfigurationServiceµÄÊ××Öĸ¼ò³Æ£¬Ò»¸ö¸üÒ×ÓÚ¹¹½¨ÔÆÔÉúÓ¦ÓõĶ¯Ì¬·þÎñ·¢ÏÖ¡¢ÅäÖùÜÀíºÍ·þÎñ¹ÜÀíƽ̨¡£NacosÓÃÓÚ·¢ÏÖ¡¢ÅäÖú͹ÜÀí΢·þÎñ¡£NacosÌṩÁËÒ»×é¼òµ¥Ò×ÓõÄÌØÐÔ¼¯£¬×ÊÖúÄú¿ìËÙʵÏÖ¶¯Ì¬·þÎñ·¢ÏÖ¡¢·þÎñÅäÖᢷþÎñÔªÊý¾Ý¼°Á÷Á¿¹ÜÀí¡£Nacos×ÊÖúÄú¸üÃô½ÝºÍÈÝÒ׵ع¹½¨¡¢½»¸¶ºÍ¹ÜÀí΢·þÎñƽ̨¡£NacosÊǹ¹½¨ÒÔ¡°·þÎñ¡±ÎªÖÐÐĵÄÏÖ´úÓ¦Óüܹ¹(ÀýÈç΢·þÎñ·¶Ê½¡¢ÔÆÔÉú·¶Ê½)µÄ·þÎñ»ù´¡ÉèÊ©¡£Nacos¹Ù·½ÔÚgithubÐû²¼µÄissueÖÐÅû¶AlibabaNacos´æÔÚÒ»¸öÓÉÓÚ²»Í×´¦ÖÃUser-Agentµ¼ÖµÄδÊÚȨ·ÃÎÊ©¶´¡£Í¨¹ý¸Ã©¶´£¬¹¥»÷Õß¿ÉÒÔ½øÐÐÈÎÒâ²Ù×÷£¬°üÂÞ´´½¨ÐÂÓû§²¢½øÐеǼºó²Ù×÷¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_XStream_DOS[CVE-2022-41966] |
Äþ¾²ÀàÐÍ£º | ¾Ü¾ø·þÎñ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÉ豸ÕýÔÚÀûÓÃxstreamÔ¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÉ豸£»Xstream½â×éʱ´¦ÖõÄÁ÷°üÂÞÀàÐÍÐÅÏ¢ÒÔÖØд´½¨ÒÔÇ°±àдµÄ¹¤¾ß¡£XStreamÒò´Ë»ùÓÚÕâЩÀàÐÍÐÅÏ¢´´½¨ÐÂʵÀý¡£¹¥»÷Õß¿ÉÒÔÀûÓô¦ÖùýµÄÊäÈëÁ÷²¢Ìæ»»»ò×¢Èë¿ÉÒÔÖ´ÐÐÈÎÒâshellÃüÁîµÄ¹¤¾ß¡£XStreamÖдæÔھܾø·þÎñ©¶´(CVE-2022-41966)£¬XStreamÔÚ½«XML·´ÐòÁл¯Îª¹¤¾ßʱ´æÔÚ¶ÑÕ»Òç³ö£¬Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýÀûÓÃÊäÈëÁ÷£¬Ê¹XStreamÔڵݹéÉ¢ÁмÆËãʱ´¥·¢¶ÑÕ»Òç³ö£¬µ¼Ö¾ܾø·þÎñ¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Splunk_´úÂëÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | SplunkEnterpriseÊÇ»úÆ÷Êý¾ÝµÄÒýÇ档ʹÓÃSplunk¿ÉÊÕ¼¯¡¢Ë÷ÒýºÍÀûÓÃËùÓÐÓ¦Ó÷¨Ê½¡¢·þÎñÆ÷ºÍÉ豸Éú³ÉµÄ¿ìËÙÒƶ¯ÐͼÆËã»úÊý¾Ý¡£¹ØÁª²¢·ÖÎö¿çÔ½¶à¸öϵͳµÄÅÓ´óʼþ¡£»ñÈ¡ÐÂÌõÀíµÄÔËÓª¿É¼ûÐÔÒÔ¼°ITºÍÒµÎñÖÇÄÜ¡£ÓÉÓÚSplunkEnterpriseÖÐSimpleXMLÒDZí°å´æÔÚ´úÂë×¢È룬¾¹ýÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õ߿ɽṹÌØÖƵÄÊý¾Ý°ü£¬Í¨¹ýPDFµ¼³ö²Ù×÷´¥·¢ÈÎÒâ´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Webmin_ÃüÁîÖ´ÐÐ[CVE-2019-15107] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_ÌáÈ¡¹¥»÷_Webmin_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2019-15107]¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪÔÊÐíÔ¶³Ì¹¥»÷ÕßÖ´ÐÐÈÎÒâÃüÁî¡£WebminÊÇÄ¿Ç°¹¦Ð§×îÇ¿´óµÄ»ùÓÚWebµÄUnixϵͳ¹ÜÀí¹¤¾ß¡£¹ÜÀíԱͨ¹ýä¯ÀÀÆ÷·ÃÎÊWebminµÄÖÖÖÖ¹ÜÀí¹¦Ð§²¢Íê³ÉÏàÓ¦µÄ¹ÜÀíÐж¯¡£ÔÚWebmin<=1.920µÄ°æ±¾ÖУ¬¸Ã©¶´ÓÉÓÚpassword_change.cgiÎļþÔÚÖØÖÃÃÜÂ빦ЧÖдæÔÚÒ»¸ö´úÂëÖ´ÐЩ¶´£¬¸Ã©¶´ÔÊÐí¶ñÒâµÚÈý·½ÔÚȱÉÙÊäÈëÑéÖ¤µÄÇé¿ö϶øÖ´ÐжñÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_IceWarp_WebClient_´úÂëÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | IceWarp,Inc.ÊÇÒ»¼ÒλÓڽݿ˹²ºÍ¹ú²¼À¸ñµÄÈí¼þ¹«Ë¾¡£Ëü¿ª·¢ÁËIceWarpMailServer£¬ÕâÊÇÒ»ÏîÃæÏòÖÐСÐÍÆóÒµµÄµç×ÓÓʼþ¡¢ÏûÏ¢ºÍÐ×÷·þÎñ¡£ÆäÖиÃϵͳµÄWebClientbasic²¿ÃÅ´æÔÚ©¶´£¬¹¥»÷Õß¿Éͨ¹ý¶ñÒâpayloadÔì³É´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_YouPHPTube_Encoder_ÃüÁîÖ´ÐÐ[CVE-2019-5127] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | YouPHPTubeEncoderÊÇYouPHPTubeµÄ±àÂëÆ÷²å¼þ£¬¸Ã²å¼þ¿ÉÔÚYouPHPTubeÖÐÌṩ±àÂëÆ÷¹¦Ð§¡£Ê¹ÓÃÕßÔÚ×Ô¼ºµÄ·þÎñÆ÷ÉÏ°²×°²¢Ê¹ÓÃYouPHPTubeEncoderÒÔÈ¡´úµÚÈý·½¹«¹²±àÂëÆ÷·þÎñÆ÷£¬¿ÉÒÔ¸ü¿ìËÙ±ã½ÝµÄ±àÂë×Ô¼ºµÄÊÓƵ£¬¶øÇÒ»¹¿ÉÒÔʹÓÃ˽Óз½Ê½¶Ô×Ô¼ºµÄÊÓƵ½øÐбàÂë¡£ÔÚYouPHPTubeEncoder2.3ÖУ¬´æÔÚÎÞÐèÉí·ÝÑéÖ¤µÄÃüÁî×¢È멶´¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍ°üÂÞÌض¨²ÎÊýµÄWebÇëÇóÀ´´¥·¢ÕâЩ©¶´¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Jinja2_SSTI_´úÂëÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | jinja2Ä£°åÖÐʹÓÃ{{}}Óï·¨ÌåÏÖÒ»¸ö±äÁ¿£¬ËüÊÇÒ»ÖÖÌØÊâµÄռλ·û¡£µ±ÀûÓÃjinja2½øÐÐäÖȾµÄʱºò£¬Ëü»á°ÑÕâЩÌØÊâµÄռλ·û½øÐÐÌî³ä/Ìæ»»£¬jinja2Ö§³ÖpythonÖÐËùÓеÄPythonÊý¾ÝÀàÐͺñÈÁÐ±í¡¢×ֶΡ¢¹¤¾ßµÈ¡£Jinja2äÖȾʱ²»½ö½öÖ»½øÐÐÌî³äºÍÌæ»»£¬»¹Äܹ»Ö´Ðв¿Ãűí´ïʽ¡£Èô¹¥»÷ÕßÄÜÀֳɿØÖÆ´«ÈëµÄ±í´ïʽ£¬Ôò¿ÉÒÔͨ¹ý·þÎñ¶ËÄ£°æäÖȾÔÚÄ¿±êÖ÷»úÉÏÖ´ÐÐÈÎÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Oracle_WebLogic_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2021-2135][CNNVD-201804-803] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃOracleWebLogic·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´£¬ÊÔͼͨ¹ý´«È뾫ÐĽṹµÄ¶ñÒâ´úÂë»òÃüÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£WebLogicÊÇÃÀ¹úOracle¹«Ë¾³öÆ·µÄÓ¦Ó÷¨Ê½·þÎñÆ÷£¬ÊÇÒ»¸ö»ùÓÚJavaEE¼Ü¹¹µÄWebÖмä¼þ¡£WebLogic´æÔÚJava·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJavaÐòÁл¯¶ñÒâ´úÂ룬µ±WebLogicÖ´ÐÐJava·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ÓÉÓÚWebLogicÐÞ¸´Â©¶´½ÓÄÉÁ˺ÚÃûµ¥¹ýÂË»úÖÆ£¬ÓÐʱºò¿ÉÄܵ¼Ö©¶´ÐÞ¸´²»³¹µ×еķ´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´Æµ·¢£¬Òò´ËÇëÃÜÇйØ×¢Oracle¹Ù·½Ðû²¼µÄ©¶´²¹¶¡£¬¼°Ê±½øÐв¹¶¡¸üÐÂÒÔÈ·±£·þÎñÆ÷Äþ¾²¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_Îļþ²Ù×÷¹¥»÷_Atlassian_Crowd_ÎļþÉÏ´«[CNNVD-201905-1031] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÕýÔÚÀûÓÃAtlassianCrowdÔÚuploadplugin.action´¦µÄÎļþÉÏ´«Â©¶´½øÐй¥»÷£¬ÉÏ´«¶ñÒâjar²å¼þ£¬´Ó¶øʹµÃAtlassianCrowdÖ±½Ó°²×°¸Ã²å¼þ´Ó¶øÖ´ÐÐÈÎÒâÃüÁî¡£AtlassianCrowdÊÇÒ»Ì×»ùÓÚWebµÄµ¥µãµÇ¼ϵͳ¡£¸ÃϵͳΪ¶àÓû§¡¢ÍøÂçÓ¦Ó÷¨Ê½ºÍĿ¼·þÎñÆ÷ÌṩÑéÖ¤¡¢ÊÚȨµÈ¹¦Ð§¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_XStream_·´ÐòÁл¯[CVE-2013-7285] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | XStreamʵÏÖÁËÒ»Ì×ÐòÁл¯ºÍ·´ÐòÁл¯»úÖÆ£¬ºËÐÄÊÇͨ¹ýConverterת»»Æ÷À´½«XMLºÍ¹¤¾ßÖ®¼ä½øÐÐÏ໥µÄת»»£¬XStream·´ÐòÁл¯Â©¶´µÄ´æÔÚÊÇÒòΪXStreamÖ§³ÖÒ»¸öÃûΪDynamicProxyConverterµÄת»»Æ÷£¬¸Ãת»»Æ÷¿ÉÒÔ½«XMLÖÐdynamic-proxy±êÇ©ÄÚÈÝת»»³É¶¯Ì¬ÊðÀíÀ๤¾ß£¬¶øµ±·¨Ê½µ÷ÓÃÁËdynamic-proxy±êÇ©ÄÚµÄinterface±êÇ©Ö¸ÏòµÄ½Ó¿ÚÀàÉùÃ÷µÄÒªÁìʱ£¬¾Í»áͨ¹ý¶¯Ì¬ÊðÀí»úÖÆÊðÀí·ÃÎÊdynamic-proxy±êÇ©ÄÚhandler±êÇ©Ö¸¶¨µÄÀàÒªÁ죻ÀûÓÃÕâ¸ö»úÖÆ£¬¹¥»÷Õß¿ÉÒԽṹ¶ñÒâµÄXMLÄÚÈÝ£¬µ±¹¥»÷Õß´ÓÍⲿÊäÈë¸Ã¶ñÒâXMLÄÚÈݺ󼴿ɴ¥·¢·´ÐòÁл¯Â©¶´¡¢µ½´ïÈÎÒâ´úÂëÖ´ÐеÄÄ¿µÄ¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ToTolink_N600R·ÓÉÆ÷_Exportovpn_δÊÚȨÃüÁî×¢Èë |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýToTolinkN600R·ÓÉÆ÷ExportovpnÃüÁî×¢È멶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£ÔÚToTolinkN600R·ÓÉÆ÷µÄcstecgi.cgiÎļþÖУ¬exportovpn½Ó¿Ú´æÔÚÃüÁî×¢È룬¹¥»÷Õ߿ɽè´ËδÑéÖ¤Ô¶³ÌÖ´ÐжñÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20230103 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÈôÒÀCMS_Ô¶³ÌÃüÁîÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ÈôÒÀºǫ́¹ÜÀíϵͳʹÓÃÁËsnakeyamlµÄjar°ü£¬snakeyamlÊÇÓÃÀ´½âÎöyamlµÄ¸ñʽ£¬¿ÉÓÃÓÚJava¹¤¾ßµÄÐòÁл¯¡¢·´ÐòÁл¯¡£ÓÉÓÚÈôÒÀºǫ́¼Æ»®ÈÎÎñ´¦£¬¶ÔÓÚ´«ÈëµÄ"µ÷ÓÃÄ¿±ê×Ö·û´®"ûÓÐÈκÎУÑ飬µ¼Ö¹¥»÷Õß¿ÉÒԽṹpayloadÔ¶³Ìµ÷ÓÃjar°ü£¬´Ó¶øÖ´ÐÐÈÎÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20230103 |