2020-07-14

Ðû²¼Ê±¼ä 2020-07-15

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÈÕÖ¾ÎļþÐÅϢй¶

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬¿É¶ÁÈ¡Ä¿µÄIPÖ÷»úÉϵÄÃô¸ÐÐÅÏ¢Îļþ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Spring_Boot_Actuator_δÊÚȨ»á¼ûÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ActuatorÊÇSpring BootÌṩµÄ·þÎñ¼à¿ØºÍÖÎÀíÖÐÐļþ£¬Ä¬ÈÏÉèÖû᷺Æð½Ó¿ÚδÊÚȨ»á¼û£¬²¿·Ö½Ó¿Ú»áй¶ÍøÕ¾Á÷Á¿ÐÅÏ¢ºÍÄÚ´æÐÅÏ¢µÈ£¬Ê¹ÓÃJolokia¿âÌØÕ÷ÉõÖÁ¿ÉÒÔÔ¶³ÌÖ´ÐÐí§Òâ´úÂ룬»ñÈ¡·þÎñÆ÷ȨÏÞ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Zoho-ManageEngine-Desktop-CentralÔ¶³Ì´úÂëÖ´ÐÐÎó²î

[CVE-2020-10189]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Zoho ManageEngine Desktop Central ÊÇÒ»¿î»ùÓÚ Web µÄÆóÒµ¼¶·þÎñÆ÷¡¢×ÀÃæ»ú¼°Òƶ¯×°±¸ÖÎÀíÈí¼þ£¬¿É¶Ô×ÀÃæ»úÒÔ¼°Òƶ¯×°±¸ÖÎÀíµÄÕû¸öÉúÃüÖÜÆÚÌṩÍêÈ«µÄÖ§³Ö£¬ÌṩÈí¼þ·Ö·¢¡¢²¹¶¡ÖÎÀí¡¢×ʲúÖÎÀí¡¢ÏµÍ³ÉèÖá¢Ô¶³Ì¿ØÖÆ¡¢USB ÍâÉèÖÎÀí¡¢Òƶ¯×°±¸¼°Ó¦ÓÃÖÎÀíµÈ¹¦Ð§Ä£¿é£¬×ÊÖú IT ÖÎÀíÔ±¼¯ÖÐÔ¶³ÌÖÎÀí´ó×ÚµÄ PC ºÍ IOS/Android/Windows Òƶ¯×°±¸¡£ÔÚZoho ManageEngine Desktop Central < 10.0.474µÄ°æ±¾ÖУ¬±£´æ·´ÐòÁл¯Îó²î¡£¹¥»÷Õß¿ÉÒÔͨ¹ý½á¹¹·´ÐòÁл¯×ֶδ¥·¢·´ÐòÁл¯Îó²îÖ´Ðй¥»÷ÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

TCP_Apache_Dubbo_Provider_·´ÐòÁл¯Îó²î[CVE-2020-1948]

Çå¾²ÀàÐÍ£º

ÍøÂçͨѶ

ÊÂÎñÐÎò£º

Apache DubboÊÇ°¢Àï°Í°Í¹«Ë¾¿ªÔ´µÄÒ»¸ö¸ßÐÔÄÜÓÅÒìµÄ·þÎñ¿ò¼Ü£¬ÊµÏÖÁ˸ßÐÔÄܵÄRPC(Ô¶³ÌÀú³ÌŲÓÃ)¹¦Ð§¡£

¸üÐÂʱ¼ä£º

20200707


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_PostgreSQL_í§ÒâÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

PostgreSQLʵÏÖÁË¡°COPY TO/FROM PROGRAM¡±Õâ¸öÐµĹ¦Ð§£¬ËüÔÊÐíÊý¾Ý¿âµÄ³¬µÈÓû§ÒÔ¼°¡°pg_read_server_files¡±×éÓû§Ö´ÐÐí§ÒâµÄ²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_PostgreSQL_í§ÒâÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

PostgreSQLʵÏÖÁË¡°COPY TO/FROM PROGRAM¡±Õâ¸öÐµĹ¦Ð§£¬ËüÔÊÐíÊý¾Ý¿âµÄ³¬µÈÓû§ÒÔ¼°¡°pg_read_server_files¡±×éÓû§Ö´ÐÐí§ÒâµÄ²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714



ÐÞ¸ÄÊÂÎñ



ÊÂÎñÃû³Æ£º

HTTP_Rejetto_HTTPFileServer_ParserLib.pas´úÂë×¢ÈëÎó²î[CVE-2014-6287]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃRejetto HTTP File ServerÖб£´æµÄ´úÂë×¢ÈëÎó²î¾ÙÐй¥»÷µÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_ThinkPHP5Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃThinkPHP¿ò¼ÜÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬ÊÔͼԶ³Ì×¢ÈëPHP´úÂ룬ÔÚÄ¿µÄ·þÎñÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£HTTP»ù±¾ÈÏÖ¤µÄÄ¿µÄÊÇÌṩ¼òÆÓµÄÓû§ÑéÖ¤¹¦Ð§£¬ÆäÈÏÖ¤Àú³Ì¼òÆÓÃ÷Îú£¬ÊʺÏÓÚ¶ÔÇå¾²ÐÔÒªÇ󲻸ߵÄϵͳ»ò×°±¸ÖС£

¸üÐÂʱ¼ä£º

20200714