ÿÖÜÉý¼¶Í¨¸æ-2021-09-14
Ðû²¼Ê±¼ä 2021-09-15ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Cockpit_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-35131][CNNVD-202101-450] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | CockpitÊÇÒ»¸ö½»»¥Ê½·þÎñÆ÷ÖÎÀí½çÃæ¡£Cockpit0.6.1֮ǰµÄ°æ±¾±£´æÇå¾²Îó²î£¬¸ÃÎó²îÔÊÐí¹¥»÷Õß×¢Èë×Ô½ç˵PHP´úÂ룬²¢ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_V-SOL_¼ÒÍ¥ÍøÂç×°±¸ÏÂÁîÖ´ÐÐÎó²î[CVE-2020-8958][CNNVD-202007-1148] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IP×°±¸ÕýÔÚʹÓÃV-SOL¼ÒÍ¥ÍøÂç×°±¸ÏÂÁîÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIP×°±¸¡£¸Ã×°±¸Ò×Êܹ¥»÷µÄ¶ËµãÊÇ×°±¸ÖÎÀíÃÅ»§ÉÏ¿ÉÓõġ°PINGÕï¶Ï¡±¹¦Ð§µÄÒ»²¿·Ö£¬Î»ÓÚ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Confluence_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2021-26084][CNNVD-202108-2421] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | AtlassianConfluenceÊÇAtlassian¹«Ë¾³öÆ·µÄרҵµÄÆóҵ֪ʶÖÎÀíÓëÐͬÈí¼þ£¬¿ÉÓÃÓÚ¹¹½¨ÆóÒµÎÄ¿âµÈ¡£ConfluenceServerºÍConfluenceDataCenter(<6.13.23¡¢<7.11.6¡¢<7.12.5¡¢<7.4.11°æ±¾)Éϱ£´æÒ»¸öOGNL×¢ÈëÎó²î£¬ÔÊÐí¾ÓÉÉí·ÝÑéÖ¤»òÔÚijЩÇéÐÎÏÂδÊÚȨµÄ¹¥»÷Õߣ¬ÔÚConfluenceServer»òConfluenceDataCenterʵÀýÉÏÖ´ÐÐí§Òâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_JasperReports_Ŀ¼±éÀúÎó²î[CVE-2018-18809][CNNVD-201903-233] |
Çå¾²ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÐÎò£º | TIBCOJasperReports¿â±£´æÒ»¸öĿ¼±éÀúÎó²î£¬ÔÊÐí¾ÓÉÔ¶³ÌÉí·ÝÑéÖ¤µÄ¹¥»÷Õß±éÀúϵͳÉϵÄĿ¼¡£¹¥»÷Õß¿ÉÒÔͨ¹ý·¢ËÍ°üÀ¨../µÄÌØÖÆÇëÇóÀ´»ñÈ¡Ö÷»úϵͳµÄÏêϸÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_Solr_í§ÒâÎļþ¶ÁÈ¡Îó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬Ê¹ÓÃJavaÓïÑÔ¿ª·¢¡£ApacheSolrµÄijЩ¹¦Ð§±£´æ¹ýÂ˲»ÑϿᣬÔÚApacheSolr먦ÆôÈÏÖ¤µÄÇéÐÎÏ£¬¹¥»÷Õß¿ÉÒÔʹÓÃConfigAPI·¿ªrequestDispatcher.requestParsers.enableRemoteStreaming¿ª¹Ø£¬²¢×îÖÕÔì³ÉSSRF»òÎļþ¶ÁÈ¡Îó²î¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Hongdian-H8922_ÏÂÁîÖ´ÐÐ[CVE-2021-28150][CNNVD-202105-280] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | HongdianH8922ÊÇÖйúHongdian¹«Ë¾µÄÒ»¸ö·ÓÉÆ÷¡£HongdianH89223.0.5devices±£´æÇå¾²Îó²î£¬¸ÃÎó²îÔÊÐí·ÇÌØȨÓû§Í¨¹ýĬÈÏÓû§½øÈëºǫִ́ÐÐí§ÒâϵͳָÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Mimosa-Routers_Ô¶³ÌÏÂÁîÖ´ÐÐ[CVE-2020-14003] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | Mimosa×°±¸/·ÓÉÆ÷ÖеÄÎó²îͨ¹ýÔÚ·ÓÉÆ÷Web½çÃæÖÐÖ´ÐжñÒâ´úÂ룬µ¼ÖÂÉí·ÝÑéÖ¤Èƹý/ȨÏÞÌáÉý£¬Íþв·þÎñÆ÷Ö÷»úÇå¾²¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_SMCÍøÂç»á»°_ÏÂÁî×¢Èë[CVE-2020-13766] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | SMCÍøÂçÌṩÐí¶àÍøÂç²úÆ·£¬ÆäÖÐÖ®Ò»Êǵ÷Öƽâµ÷Æ÷¡£SMCµÄµ÷Öƽâµ÷Æ÷ÓÃÓÚÔÚÍøÂçÖÐÒÑÅþÁ¬µÄ×°±¸Ö®¼ä´«ÊäÊý¾Ý¡£SMCÍøÂçµ÷Öƽâµ÷Æ÷·Óɻص÷ÖеÄÎó²îÔÊÐí¹¥»÷Õß×¢Èë´úÂë/»á»°²¢»ñÈ¡·´Ïòroot-shell,¿ØÖÆ·þÎñÆ÷Ö÷»ú¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Drupal-core_¶ñÒâÎļþÉÏ´«[CVE-2020-13671][CNNVD-202011-1698] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | DrupalcoreûÓÐ׼ȷµØ´¦Öóͷ£ÉÏ´«ÎļþÖеÄijЩÎļþÃû£¬Õâ¿ÉÄܵ¼ÖÂÎļþ±»Ú¹ÊÍΪ²»×¼È·µÄÀ©Õ¹Ãû£¬²¢±»ÓÃ×÷¹ýʧµÄMIMEÀàÐÍ£¬ÔÚijЩÌض¨µÄÉèÖÃÏ£¬¿ÉÄܻᱻ¿´³ÉphpÆÊÎö£¬µ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Netsweeper_´úÂëÖ´ÐÐ[CVE-2020-13167][CNNVD-202005-974] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | NetsweeperÊǼÓÄôóNetsweeper¹«Ë¾µÄÒ»Ì×WebÄÚÈݹýÂ˽â¾ö¼Æ»®¡£Netsweeper6.4.3¼°Ö®Ç°°æ±¾ÖеÄ/webadmin/tools/unixlogin.php¾ç±¾±£´æÇå¾²Îó²î¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´ÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Wavlink-Unauthenticated_Ô¶³ÌÏÂÁîÖ´ÐÐ[CVE-2020-13117][CNNVD-202102-930] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | WavlinkWN575A4ºÍWN579X3×°±¸ÔÊÐíδÂÄÀúÖ¤µÄÔ¶³ÌÓû§Í¨¹ýµÇ¼ÇëÇóÖеÄÒªº¦²ÎÊý×¢ÈëÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_IQrouter-3.3.1-·À»ðǽ_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-11963][CNNVD-202004-1801] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | EvenrouteIQrouterÊÇÃÀ¹úEvenroute¹«Ë¾µÄÒ»¿îÖÇÄÜ·ÓÉÆ÷¡£EvenrouteIQrouter3.3.1¼°Ö®Ç°°æ±¾ÖеÄWebÃæ°å±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¹¥»÷Õß¿ÉʹÓøÃÎó²î»ñÈ¡rootȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Wavlink_´úÂëÖ´ÐÐ[CVE-2020-10971][CNNVD-202005-271] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | WavlinkWAVLINKWL-WN579G3µÈ¶¼ÊÇÖйúî£Òò¿Æ¼¼£¨Wavlink£©¹«Ë¾µÄÒ»¿îÎÞÏßÍøÂçÐźÅÀ©Õ¹Æ÷¡£WAVLINKWL-WN579G3M79X3.V5030.180719°æ±¾¡¢WL-WN575A3RPT75A3.V4300.180801°æ±¾ºÍWL-WN530HG4M30HG4.V5030.191116°æ±¾Öб£´æÊäÈëÑéÖ¤¹ýʧÎó²î¡£¹¥»÷Õ߿ɽèÖúÌØÖƵÄPOSTÇëÇóʹÓøÃÎó²îÖ´ÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Cisco_DCNM_ÏÂÁî×¢ÈëÎó²î[CVE-2019-15978][CNNVD-202001-029] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | CiscoDataCenterNetworkManagerÊÇÊý¾ÝÖÐÐĵÄÍøÂçÖÎÃ÷È·¾ö¼Æ»®¡£CiscoDCNMµÄRESTAPIÔÚÆÊÎöijЩ½á¹¹µÄÇëÇóʱ£¬ÔÚʵÏÖÖб£´æÇå¾²Îó²î£¬¿ÉÄÜÔÊÐíͨ¹ýÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßÔÚϲã²Ù×÷ϵͳÉÏ×¢Èëí§ÒâÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Confluence_Îļþ¶ÁÈ¡Îó²î[CVE-2019-3394][CNNVD-201908-2216] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ConfluenceServerºÍDataCenterÔÚÒ³Ãæµ¼³ö¹¦Ð§Öб£´æÍâµØÎļþй¶Îó²î£º¾ßÓС°Ìí¼ÓÒ³Ã桱¿Õ¼äȨÏÞµÄÔ¶³Ì¹¥»÷Õߣ¬Äܹ»¶ÁÈ¡/confluence/WEB-INF/Ŀ¼ÏµÄí§ÒâÎļþ¡£¸ÃĿ¼¿ÉÄÜ°üÀ¨ÓÃÓÚÓëÆäËû·þÎñ¼¯³ÉµÄÉèÖÃÎļþ£¬¿ÉÄÜ»á×ß©ÈÏ֤ƾ֤£¬ÀýÈçLDAPÈÏ֤ƾ֤»òÆäËûÃô¸ÐÐÅÏ¢¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_Solr_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2017-12629][CNNVD-201710-501] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃApacheSolrsolr.RunExecutableListenerÔ¶³Ì´úÂëÖ´ÐÐÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñÆ÷¡£SolrʹÓÃJavaÓïÑÔ¿ª·¢£¬Ö÷Òª»ùÓÚHTTPºÍApacheLuceneʵÏÖ¡£ApacheSolr7.1.0֮ǰ°æ±¾±£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸ÃÎó²îÔ´ÓÚsolr.RunExecutableListenerÀà±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷ÕßÏòÍøÕ¾·¢ËÍÈ«ÐĽṹµÄ¹¥»÷payload£¬ÊµÑé¾ÙÐÐí§ÒâÎļþ¶ÁÈ¡£¬ÇÔÈ¡Ãô¸ÐÐÅÏ¢½ø¶ø¿ØÖÆ·þÎñÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_VMware_fixesÔ¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-3956][CNNVD-202005-985] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IP×°±¸Ê¹ÓÃVMware_fixesÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIP×°±¸¡£¸ÃÎó²îÊÇÒ»¸ö´úÂë×¢ÈëÎÊÌ⣬¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²îÏòvCloudDirector·¢ËͶñÒâÁ÷Á¿£¬´Ó¶øÔÊÐíÖ´ÐÐí§Òâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_NIUSHOPµçÉÌϵͳ_ÎļþÉÏ´«Îó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | NIUSHOP¿ªÔ´É̳Çϵͳ£¨V2.3£©±£´æí§ÒâÎļþÉÏ´«Îó²î£¬Ê¹Óúó¿ÉÔ¶³ÌÖ´ÐÐÏÂÁî¡£NIUSHOPϵͳµÄÉÌÆ·¹æ¸ñͼƬÉÏ´«´¦½ö¶ÔÎļþµÄMIME×öÁ˼ì²â£¬Î´¶ÔÉÏ´«Îļþ¾ÙÐкó׺ÃûµÄ¼ì²â¼°ÖØÃüÃû£¬¹¥»÷Õß¿ÉÒÔÈƹýÉÏ´«¿ØÖÆ£»ÇÒ¸ÃÉÏ´«µã¶ÔÎļþ×ö¼ì²âºó´¦Öóͷ£²»ÍêÉÆ£¬Î´¶Ô¼ì²âÇ·ºà¹ýµÄÎļþ¾ÙÐÐɾ³ý»òÏìÓ¦´¦Öóͷ££¬¶ÔÉÏ´«ÎļþµÄÖØÃüÃû´¦Öóͷ£¹ýÓÚ¼òÆÓ£¬¿Éͨ¹ý±¬ÆƲ³öÖØÃüÃûµÄÎļþÃû²¢¾ÙÐлá¼ûʹÓᣠ|
¸üÐÂʱ¼ä£º | 20210914 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_ľÂí_CPUMiner_ʵÑéÅþÁ¬¿ó³Ø_¿ó»ú¹ÒºÅ(BTC/LTC) |
Çå¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ÊÂÎñÐÎò£º | ¼ì²âµ½ÍÚ¿óľÂíÊÔͼÅþÁ¬¿ó³Ø¾ÙÐпó»ú¹ÒºÅµÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒâ³ÌÐò£¬ÍÚ¿ó³ÌÐò»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_TP-Link_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2020-9374][CNNVD-202002-1132] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÔÚTP-LinkTL-WR849N0.9.14.16×°±¸ÉÏ£¬µ±¹¥»÷Õ߽ṹ¶ñÒâÄÚÈÝ·¢Ë͵½Ãæ°åµÄtraceroute¹¦Ð§Ê±£¬¿ÉÒÔʹÓÃÕï¶ÏÇøÓòʵÏÖÔ¶³ÌÏÂÁîÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Belkin_LINKSYS_RE6500_ÏÂÁî×¢ÈëÎó²î[CVE-2020-35713][CNNVD-202012-1569] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | BelkinLINKSYSRE6500ÊÇÃÀ¹úBelkin¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£BelkinLINKSYSRE6500devices1.0.012.001֮ǰ°æ±¾±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬¸ÃÎó²îÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉʹÓøÃÎó²îͨ¹ýshellÔª×Ö·ûÔÚgoformsetSysAdmÒ³ÃæÉÏÖ´ÐÐí§ÒâÏÂÁî»òÉèÖÃÐÂÃÜÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_TendaAC9_ÏÂÁî×¢ÈëÎó²î[CVE-2019-5071][CNNVD-201911-1255] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | TendaAC9ÊÇÖйúÌڴTenda£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£TendaAC9RouterAC1200SmartDual-BandGigabitWiFiRoute£¨AC9V1.0FirmwareV15.03.05.16multiTRUºÍV15.03.05.14en£©ÖеÄ/goform/WanParameterSetting¹¦Ð§±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î¡£¹¥»÷Õ߿ɽèÖúÌØÖƵÄHTTPPOSTÇëÇóʹÓøÃÎó²îÖ´ÐдúÂë¡£ |
¸üÐÂʱ¼ä£º | 20210914 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ijӦÓÃÍø¹Øϵͳ_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¸ÃÎó²îͨ¹ýÍø¹Øϵͳ/cgi-bin/pingok.cgiÒÔ¼°/cgi-bin/pingtools.cgi½Ó¿Ú¾ÙÐÐÏÂÁîÖ´ÐУ¬½«¶ñÒâÏÂÁîͨ¹ýpostÇëÇó×¢Èëµ½ipaddr²ÎÊýÖС£ |
¸üÐÂʱ¼ä£º | 20210914 |