ÿÖÜÉý¼¶Í¨¸æ-2022-01-18
Ðû²¼Ê±¼ä 2022-01-18ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_Apache_Log4j_ǶÌ×ʹÓÃÄÚÖÃlookupÃûÌÃ×Ö·û´® |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ApacheLog4jÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Í¼¿â£¬ÆäÖ§³ÖÆô¶¯Ô¶³ÌÈÕÖ¾·þÎñÆ÷¡£´ËÊÂÎñ´ú±í·¢Ã÷ÁËÔ´IPÖ÷»ú·¢ËÍÁËÖª×ãÄÚÖÃlookupÃûÌõÄ×Ö·û´®£¬µ±Ä¿µÄIPÖ÷»úºó¶ËÎüÊÕµ½´ËÃûÌõÄ×Ö·û´®Ê±£¬»á×Ô¶¯Å²ÓÃlookup¹¦Ð§¡£´ËÊÂÎñ¼ì²âµÄÊÇ¡°Ç¶Ìס±Ê¹ÓÃlookup¼ÇºÅµÄÐÐΪ£¬´ËÐÐΪ¾ßÓÐÒ»¶¨Î£º¦£¬¿ÉÄܻᱻ¹¥»÷ÕßÀÄÓã¬ÈçÈƹýWAF¼ì²â£¬²¢¾ÙÐзÇÔ¤ÆÚµÄjndiŲÓᣠ|
¸üÐÂʱ¼ä£º | 20220118 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_DedeCMSV6.0.3_article_string_mix.php_Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | DedeCMSV6ϵͳ»ùÓÚPHP7.X¿ª·¢£¬¾ßÓкÜÇ¿µÄ¿ÉÀ©Õ¹ÐÔ£¬²¢ÇÒÍêÈ«¿ª·ÅÔ´´úÂë¡£Øʺǫ́article_string_mix.phpÎļþ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷Õß¿ÉʹÓôËÎó²îÄõ½Ä¿µÄÖ÷»úȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220118 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_À¶ÁèOA_admin.do_JNDIÔ¶³ÌÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ÉîÛÚÊÐÀ¶ÁèÈí¼þ¹É·ÝÓÐÏÞ¹«Ë¾Êý×ÖOA(EKP)±£´æí§ÒâÎļþ¶ÁÈ¡Îó²î¡£¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡Ãô¸ÐÐÅÏ¢£¬¶ÁÈ¡ÉèÖÃÎļþ»ñµÃÃÜÔ¿ºó»á¼ûadmin.do¼´¿ÉʹÓÃJNDIÔ¶³ÌÏÂÁîÖ´ÐлñȡȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220118 |
ÊÂÎñÃû³Æ£º | TCP_ľÂíºóÃÅ_Pupy_ÅþÁ¬C2·þÎñÆ÷ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Óɺڿ͹¤¾ßPupyÌìÉúµÄhttpÔ¶¿ØºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷,Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPupyÔ¶¿ØºóÃÅ¡£Ö´Ðк󣬹¥»÷Õß¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе£¬²¢¾ÙÐкáÏòÒƶ¯¡£PupyÊÇÒ»¸öpython±àдµÄ¿çƽ̨¡¢¶à¹¦Ð§Ô¶¿ØºóÃźͺóÉø͸¹¤¾ß¡£Ëü¾ßÓÐall-in-memoryÖ´Ðй¦Ð§£¬Õ¼ÓÿռäºÜÊÇС¡£Pupy¿ÉÒÔʹÓöàÖÖ·½·¨¾ÙÐÐͨѶ£¬Ê¹Ó÷´Éä×¢ÈëǨáãµ½Àú³ÌÖУ¬²¢´ÓÄÚ´æ¼ÓÔØÔ¶³Ìpython´úÂë¡¢python°üºÍpythonC-extensions¡£ |
¸üÐÂʱ¼ä£º | 20220118 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Zhone-Technologies-zNID-GPON-2426A_ÏÂÁîÖ´ÐÐ[CVE-2014-9118][CNNVD-201510-721] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ZhoneTechnologieszNIDGPON2426AÊÇÃÀ¹úZhoneTechnologies¹«Ë¾µÄÒ»¿î·ÓÉÆ÷¡£webadministrativeportalÊÇÆäÖеÄÒ»¸öWebÖÎÀíÔ±¿ØÖÆ̨³ÌÐò¡£ZhoneTechnologieszNIDGPON2426AS3.0.501֮ǰ°æ±¾µÄWebÖÎÀíÔ±¿ØÖÆ̨Öб£´æÇå¾²Îó²î¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÏòzhnping.cmdÎļþ·¢ËÍ´øÓÐshellÔª×Ö·ûµÄ¡®ipAddr¡¯²ÎÊýʹÓøÃÎó²îÖ´ÐÐí§ÒâÏÂÁî¡£ |
¸üÐÂʱ¼ä£º | 20220118 |