2020-09-16

Ðû²¼Ê±¼ä 2020-09-17

ÐÂÔöÊÂÎñ



ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Microsoft_NetLogon_ÌØȨÌáÉýÎó²î[CVE-2020-1472][CNNVD-202008-548]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¹¥»÷ÕßʹÓà Netlogon Ô¶³ÌЭÒé (MS-NRPC) ½¨ÉèÓëÓò¿ØÖÆÆ÷ÅþÁ¬µÄ Netlogon Ç徲ͨµÀʱ£¬±£´æÌØȨÌáÉýÎó²î¡£µ±ÀÖ³ÉʹÓôËÎó²îʱ£¬¹¥»÷ÕßÎÞÐèͨ¹ýÉí·ÝÑéÖ¤£¬¼´¿ÉÔÚÍøÂçÖеÄ×°±¸ÉÏÔËÐо­ÌØÊâÉè¼ÆµÄÓ¦ÓóÌÐò£¬»ñÈ¡Óò¿ØÖÆÆ÷µÄÖÎÀíԱȨÏÞ¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_Clojure_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃClojureµÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ.ClojureÊÇÒ»ÖÖLISPÆø¸ÅµÄÓïÑÔ£¬ÔËÐÐÔÚJVMÉÏ¡£ClojureµÄÒ»´óÌØÉ«¾ÍÊÇÆä²¢·¢»úÖÆ£¬ËüÖ§³Ö²»¿É±äµÄÊý¾Ý½á¹¹£¨ClojureÊÇÀ´×ÔÓڿɳ¤ÆÚ»¯µÄÊý¾Ý½á¹¹£©¡£ClojureÉÐÓÐÒ»¸öÌØÉ«ÊÇÈí¼þÊÂÎñ´æ´¢£¨Software Transactional Memory£¬STM£©£¬ÆäÖ§³ÖÓÃÊÂÎñÈ¡´úËøºÍ»¥³âÆ÷À´¸üй²ÏíÄÚ´æ¡£STMÕÕ¾ÉÒ»¸öÓÐÕùÒéµÄÊÖÒÕ£¬»¹ÐèÒª¸üºÃµÄ֤ʵ×Ô¼º£¬Ò»¸ö¼òÆӵIJ½·¥¾ÍÊÇ»á¼ûÒ»¸öJVMÉϵÄʵÏÖ¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ͨ´ïOA_Îļþɾ³ýµ¼ÖµÄÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃͨ´ïOAµÄV11.6°æ±¾µÄÎļþɾ³ýÎó²î¾ÙÐй¥»÷¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_C3P0_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃC3P0µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£C3P0ÊÇÒ»¸ö¿ªÔ´µÄJDBCÅþÁ¬³Ø£¬ËüʵÏÖÁËÊý¾ÝÔ´ºÍJNDI°ó¶¨£¬Ö§³ÖJDBC3¹æ·¶ºÍJDBC2µÄ±ê×¼À©Õ¹¡£ÏÖÔÚʹÓÃËüµÄ¿ªÔ´ÏîÄ¿ÓÐHibernate¡¢SpringµÈ¡£

¸üÐÂʱ¼ä£º

20200916


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_PHPCMS_v9_swfupload_json_SQL×¢ÈëÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓà PHPCMS v9 swfupload_json SQL×¢ÈëÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄ¹¥»÷payload»ñÈ¡ÍøÕ¾Êý¾Ý¿âÃô¸ÐÊý¾Ý¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2551]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2551£©£¬Oracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2551£©£¬ÊÔͼͨ¹ýGIOPЭÒé´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£Îó²î±£´æµÄweblogic°æ±¾:10.3.6.0.012.1.3.0.012.2.1.3.012.2.1.4.0ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£ÊµÑé¾ÙÐжñÒâÏÂÁî»ò´úÂë×¢È룬Զ³ÌÖ´ÐÐí§Òâ´úÂë¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_ROME_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃROMEµÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-12725]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZeroshellÊÇÒ»Ì×ÃæÏò·þÎñÆ÷ºÍǶÈëʽϵͳµÄLinux¿¯Ðаæ¡£Zeroshell 3.9.0°æ±¾Öб£´æÇå¾²Îó²î£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓÐ׼ȷ´¦Öóͷ£HTTP²ÎÊý¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ÉÏ´«¼ÓÃÜASP_Webshell

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPµØµãÖ÷»úÕýÔÚÏòÄ¿µÄIPµØµãÖ÷»ú´«ËÍ¿ÉÒɵļÓÃÜwebshellÎļþ¡£

¸üÐÂʱ¼ä£º

20200916