ÿÖÜÉý¼¶Í¨¸æ-2022-01-18

Ðû²¼Ê±¼ä 2022-01-18

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_Apache_Log4j_ǶÌ×ʹÓÃÄÚÖÃlookupÃûÌÃ×Ö·û´®

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ApacheLog4jÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Í¼¿â£¬£¬£¬£¬£¬ÆäÖ§³ÖÆô¶¯Ô¶³ÌÈÕ־ЧÀÍÆ÷¡£¡£¡£¡£´ËÊÂÎñ´ú±í·¢Ã÷ÁËÔ´IPÖ÷»ú·¢ËÍÁËÖª×ãÄÚÖÃlookupÃûÌõÄ×Ö·û´®£¬£¬£¬£¬£¬µ±Ä¿µÄIPÖ÷»úºó¶ËÎüÊÕµ½´ËÃûÌõÄ×Ö·û´®Ê±£¬£¬£¬£¬£¬»á×Ô¶¯Å²ÓÃlookup¹¦Ð§¡£¡£¡£¡£´ËÊÂÎñ¼ì²âµÄÊÇ¡°Ç¶Ìס±Ê¹ÓÃlookup¼ÇºÅµÄÐÐΪ£¬£¬£¬£¬£¬´ËÐÐΪ¾ßÓÐÒ»¶¨Î£º¦£¬£¬£¬£¬£¬¿ÉÄܻᱻ¹¥»÷ÕßÀÄÓ㬣¬£¬£¬£¬ÈçÈÆ¹ýWAF¼ì²â£¬£¬£¬£¬£¬²¢¾ÙÐзÇÔ¤ÆÚµÄjndiŲÓᣡ£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_DedeCMSV6.0.3_article_string_mix.php_Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

DedeCMSV6ϵͳ»ùÓÚPHP7.X¿ª·¢£¬£¬£¬£¬£¬¾ßÓкÜÇ¿µÄ¿ÉÀ©Õ¹ÐÔ£¬£¬£¬£¬£¬²¢ÇÒÍêÈ«¿ª·ÅÔ´´úÂë¡£¡£¡£¡£ØÊºǫ́article_string_mix.phpÎļþ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓôËÎó²îÄõ½Ä¿µÄÖ÷»úȨÏÞ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_À¶ÁèOA_admin.do_JNDIÔ¶³ÌÏÂÁîÖ´ÐÐ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÉîÛÚÊÐÀ¶ÁèÈí¼þ¹É·ÝÓÐÏÞ¹«Ë¾Êý×ÖOA(EKP)±£´æí§ÒâÎļþ¶ÁÈ¡Îó²î¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬¶ÁÈ¡ÉèÖÃÎļþ»ñµÃÃÜÔ¿ºó»á¼ûadmin.do¼´¿ÉʹÓÃJNDIÔ¶³ÌÏÂÁîÖ´ÐлñȡȨÏÞ¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_Pupy_ÅþÁ¬C2ЧÀÍÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Óɺڿ͹¤¾ßPupyÌìÉúµÄhttpÔ¶¿ØºóÃÅÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷,Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPupyÔ¶¿ØºóÃÅ¡£¡£¡£¡£Ö´Ðк󣬣¬£¬£¬£¬¹¥»÷Õß¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе£¬£¬£¬£¬£¬²¢¾ÙÐкáÏòÒÆ¶¯¡£¡£¡£¡£PupyÊÇÒ»¸öpython±àдµÄ¿çƽ̨¡¢¶à¹¦Ð§Ô¶¿ØºóÃźͺóÉøÍ¸¹¤¾ß¡£¡£¡£¡£Ëü¾ßÓÐall-in-memoryÖ´Ðй¦Ð§£¬£¬£¬£¬£¬Õ¼ÓÿռäºÜÊÇС¡£¡£¡£¡£Pupy¿ÉÒÔʹÓöàÖÖ·½·¨¾ÙÐÐͨѶ£¬£¬£¬£¬£¬Ê¹Ó÷´Éä×¢ÈëǨáãµ½Àú³ÌÖУ¬£¬£¬£¬£¬²¢´ÓÄÚ´æ¼ÓÔØÔ¶³Ìpython´úÂë¡¢python°üºÍpythonC-extensions¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Zhone-Technologies-zNID-GPON-2426A_ÏÂÁîÖ´ÐÐ[CVE-2014-9118][CNNVD-201510-721]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZhoneTechnologieszNIDGPON2426AÊÇÃÀ¹úZhoneTechnologies¹«Ë¾µÄÒ»¿î·ÓÉÆ÷¡£¡£¡£¡£webadministrativeportalÊÇÆäÖеÄÒ»¸öWebÖÎÀíÔ±¿ØÖÆÌ¨³ÌÐò¡£¡£¡£¡£ZhoneTechnologieszNIDGPON2426AS3.0.501֮ǰ°æ±¾µÄWebÖÎÀíÔ±¿ØÖÆÌ¨Öб£´æÇå¾²Îó²î¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÏòzhnping.cmdÎļþ·¢ËÍ´øÓÐshellÔª×Ö·ûµÄ¡®ipAddr¡¯²ÎÊýʹÓøÃÎó²îÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118