2020-09-16

Ðû²¼Ê±¼ä 2020-09-17

ÐÂÔöÊÂÎñ



ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Microsoft_NetLogon_ÌØÈ¨ÌáÉýÎó²î[CVE-2020-1472][CNNVD-202008-548]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¹¥»÷ÕßʹÓà Netlogon Ô¶³ÌЭÒé (MS-NRPC) ½¨ÉèÓëÓò¿ØÖÆÆ÷ÅþÁ¬µÄ Netlogon Ç徲ͨµÀʱ£¬£¬ £¬ £¬±£´æÌØÈ¨ÌáÉýÎó²î¡£¡£¡£¡£µ±ÀÖ³ÉʹÓôËÎó²îʱ£¬£¬ £¬ £¬¹¥»÷ÕßÎÞÐèͨ¹ýÉí·ÝÑéÖ¤£¬£¬ £¬ £¬¼´¿ÉÔÚÍøÂçÖеÄ×°±¸ÉÏÔËÐо­ÌØÊâÉè¼ÆµÄÓ¦ÓóÌÐò£¬£¬ £¬ £¬»ñÈ¡Óò¿ØÖÆÆ÷µÄÖÎÀíԱȨÏÞ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_Clojure_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃClojureµÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ.ClojureÊÇÒ»ÖÖLISPÆø¸ÅµÄÓïÑÔ£¬£¬ £¬ £¬ÔËÐÐÔÚJVMÉÏ¡£¡£¡£¡£ClojureµÄÒ»´óÌØÉ«¾ÍÊÇÆä²¢·¢»úÖÆ£¬£¬ £¬ £¬ËüÖ§³Ö²»¿É±äµÄÊý¾Ý½á¹¹£¨ClojureÊÇÀ´×ÔÓڿɳ¤ÆÚ»¯µÄÊý¾Ý½á¹¹£©¡£¡£¡£¡£ClojureÉÐÓÐÒ»¸öÌØÉ«ÊÇÈí¼þÊÂÎñ´æ´¢£¨Software Transactional Memory£¬£¬ £¬ £¬STM£©£¬£¬ £¬ £¬ÆäÖ§³ÖÓÃÊÂÎñÈ¡´úËøºÍ»¥³âÆ÷À´¸üй²ÏíÄÚ´æ¡£¡£¡£¡£STMÕÕ¾ÉÒ»¸öÓÐÕùÒéµÄÊÖÒÕ£¬£¬ £¬ £¬»¹ÐèÒª¸üºÃµÄ֤ʵ×Ô¼º£¬£¬ £¬ £¬Ò»¸ö¼òÆÓµÄ²½·¥¾ÍÊÇ»á¼ûÒ»¸öJVMÉϵÄʵÏÖ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ͨ´ïOA_Îļþɾ³ýµ¼ÖµÄÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃͨ´ïOAµÄV11.6°æ±¾µÄÎļþɾ³ýÎó²î¾ÙÐй¥»÷¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_C3P0_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃC3P0µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£C3P0ÊÇÒ»¸ö¿ªÔ´µÄJDBCÅþÁ¬³Ø£¬£¬ £¬ £¬ËüʵÏÖÁËÊý¾ÝÔ´ºÍJNDI°ó¶¨£¬£¬ £¬ £¬Ö§³ÖJDBC3¹æ·¶ºÍJDBC2µÄ±ê×¼À©Õ¹¡£¡£¡£¡£ÏÖÔÚʹÓÃËüµÄ¿ªÔ´ÏîÄ¿ÓÐHibernate¡¢SpringµÈ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_PHPCMS_v9_swfupload_json_SQL×¢ÈëÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓà PHPCMS v9 swfupload_json SQL×¢ÈëÎó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄ¹¥»÷payload»ñÈ¡ÍøÕ¾Êý¾Ý¿âÃô¸ÐÊý¾Ý¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2551]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2551£©£¬£¬ £¬ £¬Oracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2551£©£¬£¬ £¬ £¬ÊÔͼͨ¹ýGIOPЭÒé´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£¡£Îó²î±£´æµÄweblogic°æ±¾:10.3.6.0.012.1.3.0.012.2.1.3.012.2.1.4.0ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¡£¡£¡£¬£¬ £¬ £¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£¡£ÊµÑé¾ÙÐжñÒâÏÂÁî»ò´úÂë×¢È룬£¬ £¬ £¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_ROME_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃROMEµÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ZeroShell_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-12725]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZeroshellÊÇÒ»Ì×ÃæÏòЧÀÍÆ÷ºÍǶÈëʽϵͳµÄLinux¿¯Ðаæ¡£¡£¡£¡£Zeroshell 3.9.0°æ±¾Öб£´æÇå¾²Îó²î£¬£¬ £¬ £¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓÐ׼ȷ´¦Öóͷ£HTTP²ÎÊý¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916


ÊÂÎñÃû³Æ£º

HTTP_ÉÏ´«¼ÓÃÜASP_Webshell

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPµØµãÖ÷»úÕýÔÚÏòÄ¿µÄIPµØµãÖ÷»ú´«ËÍ¿ÉÒɵļÓÃÜwebshellÎļþ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200916