2021-03-23

Ðû²¼Ê±¼ä 2021-03-23

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Apache_Druid_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2021-25646][CNNVD-202101-2542]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ApacheDruid°üÀ¨Ö´ÐÐÓû§ÌṩµÄJavaScriptµÄ¹¦Ð§Ç¶ÈëÔÚÖÖÖÖÀàÐÍÇëÇóÖеĴúÂë¡£´Ë¹¦Ð§ÔÚÓÃÓÚ¸ßÐÅÍжÈÇéÐÎÖÐ £¬Ä¬ÈÏÒѱ»½ûÓ᣿ÉÊÇ £¬ÔÚDruid0.20.0¼°¸üµÍ°æ±¾ÖÐ £¬¾­ÓÉÉí·ÝÑéÖ¤µÄÓû§·¢ËͶñÒâÇëÇó £¬Ê¹ÓÃApacheDruidÎó²î¿ÉÒÔÖ´ÐÐí§Òâ´úÂë¡£¹¥»÷Õß¿ÉÖ±½Ó½á¹¹¶ñÒâÇëÇóÖ´ÐÐí§Òâ´úÂë £¬¿ØÖÆ·þÎñÆ÷¡£

¸üÐÂʱ¼ä£º

20210323


ÊÂÎñÃû³Æ£º

HTTP_Citrix_ADC_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-8193][CNNVD-202007-367]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÕýÔÚʹÓÃCitrix_ADCµÄȨÏÞÈƹýÎó²îͨ¹ý½¨Éèsession £¬½ø¶øÌáȨ¾ÙÐдúÂëÖ´Ðй¥»÷

¸üÐÂʱ¼ä£º

20210323


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_ASHX_reGeorg-v1.0_ºóÃÅÉÏ´«

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÏòÄ¿µÄÖ÷»úÉÏ´«reGeorg-v1.0ľÂíºóÃÅÎļþ¡£reGeorg-v1.0ľÂíÊǺڿͳ£ÓõÄÒ»ÖÖÄÚÍøÉø͸Á÷Á¿×ª·¢Ä¾Âí £¬¹¥»÷Õßͨ¹ýÉÏ´«¸ÃľÂíÎļþµ½Web·þÎñÆ÷ £¬È»ºóÔÚÍâµØͨ¹ýÌض¨¹¥»÷¾ç±¾ÅþÁ¬·þÎñ¶ËµÄľÂíÎļþ¾ÙÐÐÄÚÍøÁ÷Á¿×ª·¢¡£¹¥»÷ÕßÍýÏëͨ¹ýÕâÖÖ·½·¨ÈƹýÄÚÍø·À»¤×°±¸ÒÔWeb·þÎñÆ÷ΪÌø°å¹¥»÷ÆäËûÄÚÍøÖ÷»ú £¬ÊÔͼ»ñÈ¡ÄÚÍøÆäËû·þÎñÆ÷µÄ¿ØÖÆȨ¡£ÉÏ´«Ä¾ÂíºóÃÅ £¬½ø¶øÔ¶³ÌÅþÁ¬Ä¾ÂíºóÃŹ¥»÷ÄÚÍøÆäËûÖ÷»ú¡£

¸üÐÂʱ¼ä£º

20210323


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2019-3920][CNNVD-201903-080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃHTTP_GPON_·ÓÉÆ÷_ÈÏÖ¤Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¹¥»÷ÀÖ³É £¬¿ÉÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£

¸üÐÂʱ¼ä£º

20210323


ÊÂÎñÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_FrpÊðÀí¹¤¾ß_TLSÅþÁ¬

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

¼ì²âµ½FrpÊðÀí¹¤¾ßÅþÁ¬·þÎñÆ÷ £¬Ô´µØµãÖ÷»úÕýÔÚʹÓÃFrpÊðÀí¹¤¾ß¡£FrpÊÇÒ»¸öʹÓÃGoÓïÑÔ¿ª·¢µÄ¸ßÐÔÄܵķ´ÏòÊðÀíÓ¦Óà £¬Äܹ»¾ÙÐÐÄÚÍø´©Í¸ £¬¶ÔÍâÍøÌṩ·þÎñ¡£FrpÖ§³ÖTCP¡¢UDP¡¢HTTP¡¢HTTPSµÈЭÒéÀàÐÍ £¬²¢ÇÒÖ§³ÖWeb·þÎñƾ֤ÓòÃû¾ÙÐзÓÉת·¢¡£

¸üÐÂʱ¼ä£º

20210323


ÊÂÎñÃû³Æ£º

UDP_Netcore_·ÓÉÆ÷ºóÃÅ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÕýÔÚʹÓÃNetcore·ÓÉÆ÷µÄUDPºóÞÙÐй¥»÷µÄÐÐΪ¡£Netcore·ÓÉÆ÷±£´æÎó²î £¬¹¥»÷Õß¿ÉÒÔͨ¹ý´ËÎó²î»ñȡ·ÓÉÆ÷×î¸ßȨÏÞ¡£ÔÊÐíÔ¶³ÌÉÏ´«Ä¾Âí

¸üÐÂʱ¼ä£º

20210323