ÐÅÏ¢Çå¾²Öܱ¨-2020ÄêµÚ37ÖÜ

Ðû²¼Ê±¼ä 2020-09-14

> ±¾ÖÜÇ徲̬ÊÆ×ÛÊö


2020Äê09ÔÂ07ÈÕÖÁ09ÔÂ13ÈÕ¹²ÊÕ¼Çå¾²Îó²î57¸ö £¬ÖµµÃ¹Ø×¢µÄÊÇSAP Solution ManagerÑéÖ¤¼ì²éȱʧÎó²î£»Tenda AC18 Router´úÂëÖ´ÐÐÎó²î£»Android mediaframework CVE-2020-0245´úÂëÖ´ÐÐÎó²î£»Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î£»Project Worlds Car Rental Management Systemí§ÒâÎļþÉÏ´«Îó²î¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇWhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸öÎó²î £¬ÏÖÒÑÐÞ¸´£»ÆôÓÃHyper-VµÄWin10ϵͳÖб£´æ0day £¬¿É½¨ÉèÎļþ£»Î¢ÈíÐû²¼9Ô·ÝÇå¾²¸üР£¬×ܼÆÐÞ¸´129¸öÎó²î£»AdobeÐû²¼Çå¾²¸üР£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ12¸öÎó²î£»CodeMeterÖб£´æÑÏÖØÎó²î £¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷¡£


ƾ֤ÒÔÉÏ×ÛÊö £¬±¾ÖÜÇå¾²ÍþвΪÖС£


Ö÷ÒªÇå¾²Îó²îÁбí


1.SAP Solution ManagerÑéÖ¤¼ì²éȱʧÎó²î


SAP Solution Manager±£´æÑéÖ¤¼ì²éȱʧÎó²î £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó £¬Î´ÊÚȨ¿ØÖÆ»á¼ûÓ¦Óá£

https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=557449700


2. Tenda AC18 Router´úÂëÖ´ÐÐÎó²î


Tenda AC18 Router /usr/lib/lua/lua/ngx_authserver/ngx_wdasÖеÄlogincheck£¨£©º¯ÊýµÄÉí·ÝÑéÖ¤´¦Öóͷ£±£´æÎó²î £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó £¬Î´ÊÚȨִÐÐí§Òâ´úÂë¡£

https://www.tendacn.com/en/product/AC18.html


3.Android mediaframework CVE-2020-0245´úÂëÖ´ÐÐÎó²î


Android mediaframework±£´æÇå¾²Îó²î £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇó £¬ÓÕʹÓû§ÆÊÎö £¬¿ÉʹӦÓóÌÐò±ÀÀ£»òÕßÒÔϵͳÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£

https://source.android.com/security/bulletin/2020-09-01


4. Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î


Microsoft ChakraCore±£´æÄÚ´æÆÆËðÎó²î £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄWEBÇëÇó £¬ÓÕʹÓû§ÆÊÎö £¬¿ÉʹӦÓóÌÐò±ÀÀ£»òÕßÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£

https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2020-1172


5. Project Worlds Car Rental Management Systemí§ÒâÎļþÉÏ´«Îó²î


Project Worlds Car Rental Management System³µÍ¼ÏñÉÏ´«×é¼þ±£´æÇå¾²Îó²î £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó £¬¿ÉÉÏ´«í§ÒâÎļþ £¬²¢Ö´ÐÐí§Òâ´úÂë¡£


https://github.com/hyd3sec/CarRentalManagement-Unauth-RCE-WebApp


> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö


1¡¢WhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸öÎó²î £¬ÏÖÒÑÐÞ¸´


1.jpg


WhatsAppÅû¶ÆäÓ¦ÓÃÖб£´æµÄ6¸öÎó²î £¬ÏÖÒÑÐÞ¸´¡£´Ë´ÎÐÞ¸´µÄÎó²îÖнÏΪÑÏÖصÄΪ¿ÍջдÈëÒç³öÎó²î£¨CVE-2020-1894£© £¬¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐÐ £¬32λװ±¸±£´æµÄдÒç³öÎó²î£¨CVE-2020-1891£©ºÍURLÑéÖ¤ÎÊÌ⣨CVE-2020-1890£© £¬¿Éµ¼ÖºڿÍÔÚûÓÐÓëÓû§½»»¥µÄÇéÐÎÏ´ӷ¢¼þÈ˵ÄURL¼ÓÔØͼÏñ¡£ÆäËûÎó²îΪÇå¾²¼ì²âÈƹýÎÊÌ⣨CVE-2020-1889µÄ£©¡¢»º³åÇøÒç³öÎó²î£¨CVE-2020-1886£©ºÍÊäÈëÑéÖ¤ÎÊÌ⣨CVE-2019-11928£©¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/107950/security/whatsapp-undisclosed-flaws.html


2¡¢ÆôÓÃHyper-VµÄWin10ϵͳÖб£´æ0day £¬¿É½¨ÉèÎļþ


2.jpg


ÄæÏò¹¤³ÌʦJonas LykkegaardÔÚÆôÓÃÁËHyper-VµÄWindows 10ϵͳÖз¢Ã÷ÁËÒ»¸öеÄ0day £¬¸ÃÎó²î¿É±»Ê¹ÓÃÔÚÊÜÓ°ÏìµÄ²Ù×÷ϵͳÖн¨ÉèÎļþ¡£ÔÚHyper-V´¦ÓÚÔ˶¯×´Ì¬Ê± £¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚ\ system32Öн¨ÉèÎļþ £¬²¢ÇÒ²»ÐèÒª¾ÙÐÐÌáȨ¡£ÓÉÓÚÎļþµÄ½¨ÉèÕßÒ²ÊÇËùÓÐÕß £¬Òò´Ë¹¥»÷Õß¿ÉÒÔʹÓøÃÎļþ½«¶ñÒâ´úÂë×¢ÈëϵͳÄÚ²¿ £¬²¢ÔÚÐèҪʱʹÓÃÌáÉýµÄȨÏÞÖ´ÐиöñÒâ´úÂë¡£CERT/CCÎó²îÆÊÎöʦWill Dormann  ÌåÏÖ £¬¹¥»÷ÕßÏÕЩ²»ÐèÒª×öÈκÎÆð¾¢±ã¿ÉÒÔʹÓøÃÎó²î¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/windows-10-sandbox-activation-enables-zero-day-vulnerability/


3¡¢Î¢ÈíÐû²¼9Ô·ÝÇå¾²¸üР£¬×ܼÆÐÞ¸´129¸öÎó²î


3.jpg


΢ÈíÐû²¼ÁË9Ô·ÝÇå¾²¸üР£¬×ܼÆÐÞ¸´129¸öÎó²î £¬ÆäÖаüÀ¨23¸öÑÏÖØÎó²î¡£Ö»¹Ü´Ë´Î¸üÐÂÖв¢Ã»ÓÐ0day £¬µ«ÈÔÓÐÐí¶àÎó²î¿É±»Ô¶³ÌʹÓᣴ˴ÎÐÞ¸´µÄ¾ÍΪÑÏÖصÄÈý¸öÎó²î»®·ÖΪMicrosoft ExchangeÄÚ´æËð»µÎó²î£¨CVE-2020-16875£© £¬Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²î¿ÉÒÔ½öͨ¹ýÏòExchange·þÎñÆ÷·¢ËÍÌØÖƵç×ÓÓʼþÔ¶³ÌÖ´ÐдúÂë £¬WindowsÔ¶³ÌÖ´ÐдúÂëµÄMicrosoft COMÎó²î£¨CVE-2020-0922£© £¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û´øÓжñÒâJavaScriptµÄÕ¾µãÀ´¼ÓÒÔʹÓà £¬ÒÔ¼°WindowsÎı¾·þÎñÄ £¿éÔ¶³ÌÖ´ÐдúÂëÎó²î£¨CVE-2020-0908£© £¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û°üÀ¨¶ñÒâ¹ã¸æµÄÍøÕ¾À´¼ÓÒÔʹÓá£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-september-2020-patch-tuesday-fixes-129-vulnerabilities/


4¡¢AdobeÐû²¼Çå¾²¸üР£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ12¸öÎó²î


4.jpg


AdobeÐû²¼Çå¾²¸üР£¬ÒÑÐÞ¸´Ó°ÏìÆäAdobe InDesign¡¢Adobe FramemakerºÍAdobe Experience Manager²úÆ·ÖеÄ12¸ö´úÂëÖ´ÐÐÎó²î¡£´Ë´Î¸üÐÂÐÞ¸´ÁËAdobe InDesignÖÐÒòÄÚ´æË𻵵¼ÖµÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9727¡¢CVE-2020-9728¡¢CVE-2020-9729¡¢CVE-2020-9730ºÍCVE-2020-9731£© £¬FramemakerÖÐÔ½½ç¶ÁÈ¡µ¼ÖµĴúÂëÖ´ÐÐÎó²î£¨CVE-2020-9726£©ºÍ»ùÓÚ¿ÍÕ»µÄ»º³åÇøÒç³öµÄ´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9725 £© £¬ÒÔ¼°Experience ManagerÖеĶà¸öXSSÎó²î¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-vulnerabilities-in-indesign-and-framemaker/


5¡¢CodeMeterÖб£´æÑÏÖØÎó²î £¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷


5.jpg


Claroty·¢Ã÷Î÷ÃÅ×ӵȶ¥¼¶ICS¹©Ó¦ÉÌʹÓõĵÚÈý·½¹¤Òµ×é¼þCodeMeterÖб£´æ6¸öÑÏÖصÄÎó²î £¬»ò½«µ¼ÖÂOT¹©Ó¦Á´¹¥»÷ £¬ÕâЩÎó²îµÄCVSSÆÀ·Ö¾ùΪ10.0¡£CISAÌåÏÖ £¬¹¥»÷ÕßÀÖ³ÉʹÓÃÕâЩÎó²îºó¿É¸ü¸ÄºÍαÔìÔÊÐíÖ¤Îļþ £¬µ¼Ö¾ܾø·þÎñÇéÐÎ £¬Ç±ÔÚµØʵÏÖÔ¶³ÌÖ´ÐдúÂë¡¢¶ÁÈ¡¶ÑÊý¾Ý²¢×èÖ¹ÒÀÀµCodeMeterµÄµÚÈý·½Èí¼þµÄÕý³£ÔËÐС£ÆäÖÐ×îÑÏÖصÄÎó²î¿Éͨ¹ýÆÆËðCodeMeterͨѶЭæźÍÄÚ²¿APÒÔIÔ¶³ÌÖ´ÐдúÂë £¬ÊµÏÖICSϵͳµÄÍêÈ«½ÓÊÜ¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/critical-bugs-enable-ot-supply/