2020-09-19

Ðû²¼Ê±¼ä 2020-09-21

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Apache_DolphinScheduler_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-11974]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache DolphinSchedulerµÄJDBC¿Í»§¶Ë¾ÙÐз´ÐòÁл¯²Ù×÷½ø¶øµ¼ÖÂÔ¶³Ì´úÖ´ÐС£Apache DolphinScheduler(Incubator,Ô­Easy Scheduler)ÊÇÒ»¸öÂþÑÜʽÊý¾ÝÊÂÇéÁ÷ʹÃüµ÷Àíϵͳ£¬Ö÷Òª½â¾öÊý¾ÝÑз¢ETL´í×ÛÖØ´óµÄÒÀÀµ¹Øϵ£¬¶ø²»¿ÉÖ±¹Û¼à¿ØʹÃü¿µ½¡×´Ì¬µÈÎÊÌâ¡£

¸üÐÂʱ¼ä£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_WordpressFile-manager_í§ÒâÎļþÉÏ´«Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

File ManagerÊÇÒ»¸öWordPress²å¼þ£¬ÓÉÓÚº¯Êý´¦Öóͷ£²»ÑϽ÷£¬¹¥»÷Õ߿ɽṹ¶ñÒâÇëÇó°üÉÏ´«í§ÒâÎļþ¡£

¸üÐÂʱ¼ä£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ComtrendVR3033_ÏÂÁî×¢ÈëÎó²î[CVE-2020-10173][CNNVD-202003-207]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Comtrend VR-3033ÊÇ¿µÈ«µçѶ£¨Comtrend£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£ ʹÓÃDE11-416SSG-C01_R02.A2pvI042j1.d26m°æ±¾¹Ì¼þµÄComtrend VR-3033Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£¹¥»÷Õß¿ÉÄÜÊǶñÒâÈí¼þMirai£¬¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе¡£

¸üÐÂʱ¼ä£º

20200919


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

DNS_ľÂí_¿ÉÒÉ¿ó³ØÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÍÚ¿óľÂí¡£

¸üÐÂʱ¼ä£º

20200919


ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_ʵÑéÅþÁ¬¿ó³Ø

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£

¸üÐÂʱ¼ä£º

20200919


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Apache_Shiro<1.6.0_ÈÏÖ¤ÈƹýÎó²î[CVE-2020-13933][CNNVD-202008-870]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Apache ShiroÊÇÒ»¸öÇ¿Ê¢ÇÒÒ×ÓõÄJavaÇå¾²¿ò¼Ü£¬Ëü¿ÉÒÔÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£ÏÖÔÚ³£¼û¼¯³ÉÓÚÖÖÖÖÓ¦ÓÃÖоÙÐÐÉí·ÝÑéÖ¤£¬ÊÚȨµÈ¡£¹ØÓÚApache Shiro 1.5.3֮ǰµÄ°æ±¾£¬µ±½«Apache ShiroÓëSpring¿ØÖÆÆ÷Ò»ÆðʹÓÃʱ£¬¹¥»÷ÕßÌØÖÆÇëÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤Èƹý¡£

¸üÐÂʱ¼ä£º

20200919