2021-01-19
Ðû²¼Ê±¼ä 2021-01-19ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_ľÂí_CPUMiner_ÅþÁ¬¿ó³ØÀÖ³É |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½µ½ÍÚ¿óľÂíCPUMinerÅþÁ¬¿ó³ØÀֳɵÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerľÂí¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Netis_WF2419_²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î[CVE-2019-19356][CNNVD-202002-238] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ʹÓÃV1.2.31805ºÍV2.2.36123°æ±¾¹Ì¼þµÄNetisWF2419Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ZendFramework_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2021-3007][CNNVD-202101-025] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ZENDZendFramework£¨ZF£©ÊÇÃÀ¹úZend£¨ZEND£©¹«Ë¾µÄÒ»Ì׿ªÔ´µÄPHP¿ª·¢¿ò¼Ü£¬ËüÖ÷ÒªÓÃÓÚ¿ª·¢Web³ÌÐòºÍ·þÎñ¡£ZendFramework3.0.0°æ±¾±£´æÇå¾²Îó²î£¬¸ÃÎó²îÔ´ÓÚÓÐÒ»¸ö·´ÐòÁл¯Îó²î£¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_ÎļþÉÏ´«_Apache_Flinkí§ÒâÎļþÉÏ´«Îó²î[CVE-2020-17518][CNNVD-202101-273] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApache_Flink1.5.1¾ÙÐÐí§ÒâÎļþÉÏ´«;ApacheFlinkÊǾßÓÐÇ¿Ê¢µÄÁ÷ºÍÅú´¦Öóͷ£¹¦Ð§µÄ¿ªÔ´Á÷´¦Öóͷ£¿ò¼Ü¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Technicolor_TD5130_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-18396][CVE-2019-18396][CNNVD-201910-1908] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | TechnicolorTD5130v2ÊÇ·¨¹úÌØÒÕ£¨Technicolor£©¹«Ë¾µÄÒ»¿îµ÷Öƽâµ÷Æ÷¡£TechnicolorTD5130v2ÖеÄOiµÚÈý·½¹Ì¼þµÄPingÄ£¿é±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâÔªËØ£¬µ¼Ö¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨ÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Schneider_Electric_U.Motion_BuilderÏÂÁî×¢ÈëÎó²î[CVE-2018-7841][CNNVD-201905-612] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | SchneiderElectricU.MotionBuilderÊÇ·¨¹úÊ©Ä͵µçÆø£¨SchneiderElectric£©¹«Ë¾µÄÒ»Ì×ÐÞ½¨ÎïÖÇÄÜÖÎÀíϵͳ¡£SchneiderElectricU.MotionBuilder1.3.4¼°Ö®Ç°°æ±¾ÖеÄtrack_import_export.php¾ç±¾Öб£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬¸ÃÎó²îÔ´ÓÚÍⲿÊäÈëÊý¾Ý½á¹¹²Ù×÷ϵͳ¿ÉÖ´ÐÐÏÂÁîÀú³ÌÖУ¬ÍøÂçϵͳ»ò²úƷδ׼ȷ¹ýÂËÆäÖеÄÌØÊâ×Ö·û¡¢ÏÂÁîµÈ¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´Ðв»·¨²Ù×÷ϵͳÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ZabbixÊÇÒ»¸ö¿ªÔ´µÄÆóÒµ¼¶ÐÔÄܼà¿Ø½â¾ö¼Æ»®¡£Zabbix°æ±¾2.2-3.0.3±£´æZabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î£¬¹¥»÷ÕßʹÓôËÎó²îÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬Ô¶³ÌÖ´ÐÐϵͳÏÂÁî¡£ÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_IBM_WebSphere_Java·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2015-7450] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | WebSphereÊÇIBM¹«Ë¾¿ª·¢µÄÖÐÐļþ»ù´¡Éèʩƽ̨¡£WebSphere7°æ±¾ÔÚ¿ª·¢ÖÐʹÓÃÁËApacheCommonsCollections¿âÖеÄInvokerTransformerÀ࣬¸ÃÀà±£´æJava·´ÐòÁл¯Îó²î¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Zabbix_JSON-RPC_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃNETGEAR_DGN2200_v1v2v3v4_Ô¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬ÊÔͼͨ¹ýÔ¶³Ì´úÂëÖ´ÐÐÎó²îÈëÇÖNETGEAR·ÓÉÆ÷£¬¿ÉÒÔÖ´ÐÐí§ÒâÏÂÁî»ñµÃ·ÓÉÆ÷µÄ¿ØÖÆȨ¡£NETGEAR_DGN2200ÊÇÒ»¿î³£ÓõÄÎÞÏß·ÓÉÆ÷×°±¸¡£NETGEAR_DGN2200·ÓÉÆ÷µÄv1/v2/v3/v4°æ±¾±£´ædnslookup.cgiÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£Ä¿½ñ·ÓÉÆ÷¹Ì¼þΪÕâЩ°æ±¾Ê±±£´æ¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔͨ¹ý×Ô¶¯»¯¾ç±¾¹¥»÷ÍøÂçÖеÄ·ÓÉÆ÷×°±¸£¬Ö´ÐÐí§Òâ´úÂ롣ʵÑéÔÚÄ¿µÄ·ÓÉÆ÷×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬¿ØÖÆÄ¿µÄ·ÓÉÆ÷ÍøÂç¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-3920][CNNVD-201903-080] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_Liferay_Portal_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-7961][CNNVD-202003-1260] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | LiferayÊÇÒ»¸ö¿ªÔ´µÄPortal(ÈÏÖ¤)²úÆ·,Ìṩ¶Ô¶à¸ö×ÔÁ¦ÏµÍ³µÄÄÚÈݼ¯³É,ΪÆóÒµÐÅÏ¢¡¢Á÷³ÌµÈµÄÕûºÏÌṩÁËÒ»Ì×ÍêÕûµÄ½â¾ö¼Æ»®,ºÍÆäËûÉÌÒµ²úÆ·Ïà±È,LiferayÓÐ×ÅÐí¶àÓÅÁ¼µÄÌØÕ÷,²¢ÇÒÃâ·Ñ,ÔÚÈ«Çò¶¼Óн϶àÓû§¡£ÔÚLiferay6.1.x-7.2.x°æ±¾Öб£´æͨ¹ýδÊÚȨ»á¼ûµÄapi½á¹¹jsonÓï¾äµ¼Ö·´ÐòÁл¯Îó²î½ø¶øÖ´Ðй¥»÷Õß´úÂëÏÂÁîµÄÎó²î¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_ajaxaction_ÎļþÉÏ´«Îó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÖÂÔ¶OAÊÇÒ»Ìװ칫ÐͬÈí¼þ¡£¿ËÈÕ£¬°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐļà¿Øµ½ÖÂÔ¶OAajaxActionÎļþÉÏ´«Îó²îʹÓôúÂëÅû¶¡£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©ajax½Ó¿Ú±£´æδÊÚȨ»á¼û£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬿ÉÔÚÎÞÐèµÇ¼µÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬´Ó¶ø¿ØÖÆ·þÎñÆ÷¡£ÖÂÔ¶OA¹Ù·½ÒÑÕë¶Ô¸ÃÎó²îÌṩ²¹¶¡£¬¸ÃÎó²îʹÓôúÂëÒÑÔÚ»¥ÁªÍøÉϹûÕæÈö²¥¡£°¢ÀïÔÆÓ¦¼±ÏìÓ¦ÖÐÐÄÌáÐÑÖÂÔ¶OAÓû§¾¡¿ì½ÓÄÉÇå¾²²½·¥×èÖ¹Îó²î¹¥»÷¡£ |
¸üÐÂʱ¼ä£º | 20210119 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ÖÂÔ¶OA_δÊÚȨ»á¼û |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÖÂÔ¶OAA8ÊÇÒ»¿îÊ¢ÐеÄÐͬÖÎÀíÈí¼þ£¬ÔÚ¸÷ÖС¢´óÐÍÆóÒµ»ú¹¹ÖÐÆÕ±éʹÓá£ÓÉÓÚÖÂÔ¶OA¾É°æ±¾Ä³Ð©½Ó¿ÚÄܱ»Î´ÊÚȨ»á¼û£¬²¢ÇÒ²¿·Öº¯Êý±£´æ¹ýÂËȱ·¦£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬿ÉÔÚδÊÚȨµÄÇéÐÎÏÂÉÏ´«¶ñÒâ¾ç±¾Îļþ£¬´Ó¶ø¿ØÖÆ·þÎñÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20210119 |