ÿÖÜÉý¼¶Í¨¸æ-2023-05-23

Ðû²¼Ê±¼ä 2023-05-23

ÐÂÔöÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Sinapsi_eSolar_Light_Photovoltaic_System_Monitor_SQL×¢Èë[CVE-2012-5861][CNNVD-201211-425]

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSinapsieSolarLightPhotovoltaicSystemMonitorSQL×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£SinapsieSolarLightÊÇÌ«ÑôÄÜÓ¦ÓÃÄÚʹÓõļà¿Øϵͳ¡£SinapsieSolar£¬SinapsieSolarDUO¹Ì¼þ2.0.2870_2.2.12֮ǰ°æ±¾Öб£´æ¶à¸öSQL×¢ÈëÎó²î¡£Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²îͨ¹ý(1)primo²Ù×÷Öеġ®inverterselect¡¯²ÎÊý´«Ë͵½dettagliinverter.php¾ç±¾»ò(2)¡®lingua¡¯²ÎÊý´«Ë͵½changelanguagesession.php¾ç±¾£¬Ö´ÐÐí§ÒâSQLÏÂÁî¡£¹¥»÷Õß¿É»ñµÃÃô¸ÐÐÅÏ¢»ò²Ù×÷Êý¾Ý¿â¡£

¸üÐÂʱ¼ä£º

20230523


ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÎļþÉÏ´«_EOFFICEV9.5_uploadify

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

·ºÎ¢ eofficev9.5±£´æÎļþÉÏ´«Îó²î

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_¿ÉÒÉÐÐΪ_·´ÐòÁл¯_YONYOUNC65_NCMessageServlet

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÓÃÓÑNC6.5 NCMessageServlet ±£´æ·´ÐòÁл¯Îó²î

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Drupal-8.x_RCE[CVE-2018-7600][CNNVD-201803-1136]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

DrupalÊÇʹÓÃPHPÓïÑÔ±àдµÄ¿ªÔ´ÄÚÈÝÖÎÀí¿ò¼Ü£¨CMF£©£¬ËüÓÉÄÚÈÝÖÎÀíϵͳ£¨CMS£©ºÍPHP¿ª·¢¿ò¼Ü£¨Framework£©ÅäºÏ×é³É¡£Ò»Á¬¶àÄêÈÙ»ñÈ«Çò×î¼ÑCMS´ó½±£¬ÊÇ»ùÓÚPHPÓïÑÔ×îÖøÃûµÄWEBÓ¦ÓóÌÐò¡£Drupalv8.xÖÐ<v8.3.9/v8.4.x<v8.4.6/v8.5.x<v8.5.1°æ±¾±£´æÎó²îCVE-2018-7600£¬¸ÃÎó²î»áµ¼Ö¹¥»÷ÕßÔÚÖ÷»úÉϾÙÐÐí§ÒâÏÂÁîÖ´ÐС£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Floxif_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

FloxifÊÇÒ»ÖÖÓÉÀ´ÒѾõÄѬȾÐͲ¡¶¾,¸Ã²¡¶¾»á±©Á¦Ñ¬È¾Êܺ¦Õß»úеÉϵÄexeÒÔ¼°dllÎļþÀ´Èö²¥×ÔÉí¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_MalSpam_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½MalSpamľÂíÓòÃûÆÊÎöÇëÇó¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_ľÂíºóÃÅ_Tofsee_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

Tofsee£¨Ò²³ÆΪGheg£©ÊÇÒ»ÖÖ¶ñÒâÈí¼þ¼Ò×壬ÊôÓÚ½©Ê¬ÍøÂ磨botnet£©ºÍÀ¬»øÓʼþ£¨spam£©Èö²¥¹¤¾ß¡£Ëüͨ³£Í¨¹ýÀ¬»øÓʼþ¸½¼þ¡¢¶ñÒâÏÂÔØ»òÕßÎó²îʹÓõȷ½·¨Èö²¥£¬²¢½«ÊÜѬȾµÄÅÌËã»ú¼ÓÈëÒ»¸ö¿ØÖƽڵãÍøÂ磬ÓÃÓÚÖ´ÐÐÖÖÖÖ¶ñÒâÔ˶¯£¬Èç·¢ËÍÀ¬»øÓʼþ¡¢Èö²¥ÆäËû¶ñÒâÈí¼þ¡¢¾ÙÐÐÍøÂç´¹ÂÚµÈ.

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁî¿ØÖÆ_ľÂíºóÃÅ_Fareit_ÉÏ´«Ö÷»úÃô¸ÐÐÅÏ¢

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

Fareit£¨Ò²³ÆΪPony£©ÊÇÒ»ÖÖ¶ñÒâÈí¼þ¼Ò×壬ÊôÓÚÐÅÏ¢ÇÔȡľÂí£¨Trojan£©ÖÖ±ð¡£Ëüͨ³£Í¨¹ý¶ñÒâÏÂÔØ¡¢Îó²îʹÓá¢À¬»øÓʼþµÈ·½·¨Èö²¥£¬²¢ÔÚÊÜѬȾµÄÅÌËã»úÉÏÖ´ÐжñÒâÔ˶¯£¬°üÀ¨ÇÔÈ¡Ãô¸ÐÐÅÏ¢¡¢µÇ¼ƾ֤¡¢ÒøÐÐÕË»§ÐÅÏ¢µÈ¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ȨÏÞÈƹý_Dahua_ÉãÏñÍ·[CVE-2021-33044][CNNVD-202109-1080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

´ó»ª²¿·Ö²úÆ·ÔÚÉÏ°¶Àú³ÌÖб£´æÉí·ÝÑéÖ¤ÈƹýÎó²î£¬¹¥»÷ÕßÔÚ²»ÐèҪȨÏÞµÄÇéÐÎÏ£¬Í¨¹ý½á¹¹¶ñÒⱨÎļ´¿ÉÈƹý×°±¸Éí·ÝÑéÖ¤£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÏÂÁîÖ´ÐÐ_Smartbi_Ô¶³ÌÏÂÁîÖ´ÐÐ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ö÷»úÕýÔÚÔâÊÜSmartbiÔ¶³ÌÏÂÁîÖ´Ðй¥»÷¡£SmartbiÖÐδ¾­Éí·ÝÈÏÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉʹÓÃstub½Ó¿Ú½á¹¹ÇëÇóÈƹý²¹¶¡ÏÞÖÆ£¬½ø¶ø¿ØÖÆJDBCURL£¬Ôì³ÉÔ¶³Ì´úÂëÖ´ÐлòÐÅϢй¶¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÏÂÁîÖ´ÐÐ_D-Link_apply_sec.cgi[CVE-2019-16920][CNNVD-201909-1326]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃÄ¿µÄÖ÷»úD-Link²úÆ·£¨ÈçDIR-655C¡¢DIR-866L¡¢DIR-652ºÍDHP-1565£©ÖÐapply_sec.cgi´¦ÏÂÁî×¢ÈëÎó²î£¬¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²î½«í§Òâ×Ö·û´®·¢Ë͵½¡°PingTest¡±Íø¹Ø½Ó¿ÚÀ´ÊµÏÖÏÂÁî×¢Èë¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÎļþÉÏ´«_UEDITOR×é¼þʹÓÃ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

UEDITOR ץȡԶ³ÌÊý¾ÝÔ´µÄʱ¼äδ¶ÔÎļþºó׺Ãû¾ÙÐÐÑéÖ¤£¬µ¼ÖÂÁËí§ÒâÎļþµÄдÈëÎó²î¡£ueditor°æ±¾<1.4.3Îó²îʹÓÃ

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_·´ÐòÁл¯_GoAnywhereMFT·´ÐòÁл¯Îó²î[CVE-2023-0669][CVE-2023-0669][CNNVD-202302-398]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýGoAnywhereMFT·´ÐòÁл¯Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£GoAnywhereMFTÖÎÀí¶Ë±£´æ·´ÐòÁл¯Îó²î£¬¹¥»÷ÕßʹÓøÃÎó²îÎÞÐèµÇ¼±ã¿ÉÒÔÔ¶³ÌÖ´ÐÐí§ÒâÏÂÁî¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ȨÏÞÈƹý_Dahua_ÉãÏñÍ·[CVE-2021-33044][CNNVD-202109-1080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

´ó»ª²¿·Ö²úÆ·ÔÚÉÏ°¶Àú³ÌÖб£´æÉí·ÝÑéÖ¤ÈƹýÎó²î£¬¹¥»÷ÕßÔÚ²»ÐèҪȨÏÞµÄÇéÐÎÏ£¬Í¨¹ý½á¹¹¶ñÒⱨÎļ´¿ÉÈƹý×°±¸Éí·ÝÑéÖ¤£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÐÅϢй¶_nginx¼à¿ØÒ³Ãæ

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ̽²âÄ¿µÄipÖ÷»úÖеÄnginx¼à¿ØÒ³Ã棬¿ÉÒÔͨ¹ý»á¼û¸ÃÒ³ÃæÀ´Éó²é·þÎñÆ÷ÔËÐÐ״̬¡£

¸üÐÂʱ¼ä£º

20230523

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_½©Ê¬ÍøÂç_Andromeda_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½½©Ê¬ÍøÂçAndromedaÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËAndromeda¡£AndromedaÊÇÒ»¸öÄ£¿é»¯µÄ½©Ê¬ÍøÂ磬×îԭʼµÄÎļþ½ö°üÀ¨Ò»¸ö¼ÓÔØÆ÷¡£ÔËÐÐʱ´ú£¬»á´ÓC&C·þÎñÆ÷ÏÂÔØÖÖÖÖÄ£¿é£¬Í¬Ê±Ò²¾ßÓз´ÐéÄâ»úºÍ·´µ÷ÊԵĹ¦Ð§¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

FTP_ľÂí_AgentTesla_Keylogger_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËAgentTesla Keylogger¡£

AgentTesla KeyloggerÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄÇÔÃÜľÂí£¬¿ÉÇÔÈ¡°üÀ¨ä¯ÀÀÆ÷¡¢Óʼþ¡¢FTP¡¢¼ôÌù°åµÈ¿Í»§¶ËÉúÑĵÄÕ˺ÅÃÜÂë¡£»¹¿ÉÒÔ½ØÈ¡ÆÁÄ»²¢ÉÏ´«¡£

ÇÔÈ¡Ãô¸ÐÊý¾Ý¡£

¸üÐÂʱ¼ä£º

20230523