Schneider | ¶à¸ö°²È«·ì϶¹«¸æ

°ä²¼¹¦·ò 2020-05-08

0x00 ·ì϶¸ÅÊö


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


0x01 ·ì϶ÏêÇé


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website




Ê©ÄÍµÂµçÆø¹«Ë¾ÊÇÈ«ÇòÄÜЧÖÎÀíÁìÓòµÄ¸¨µ¼Õߣ¬£¬£¬£¬£¬Îª100¶à¸ö¹ú¶ÈµÄÄÜÔ´¼°»ù´¡ÉèÊ©¡¢¹¤Òµ¡¢Êý¾ÝÖÐÐļ°ÍøÂ硢¥ÓîºÍסլÊг¡ÌṩÕûÌå½â¾ö¹æ»®¡£¡£¡£¡£ ¡£¡£¡£Schneider Electric Modicon M580µÈ¶¼ÊǸù«Ë¾µÄ²úÆ·¡£¡£¡£¡£ ¡£¡£¡£

×î½ü£¬£¬£¬£¬£¬×êÑÐÈËÔ±ÓÖ´ÓÊ©ÄÍµÂµçÆøÈí¼þÖз¢ÏÖÁËÒ»¸ö·ì϶£¨CVE-2020-7489£©£¬£¬£¬£¬£¬ËüÀàËÆÓÚ³ôÃûÔ¶ÑïµÄ¡°ÕðÍø¡±²¡¶¾(Stuxnet)¶ñÒâÈí¼þÔøÀûÓõķì϶¡£¡£¡£¡£ ¡£¡£¡£

Ê®¶àÄêǰ£¬£¬£¬£¬£¬ÃÀ¹úºÍÒÔÉ«Áб»Ö¸ÀûÓá°ÕðÍø¡±²¡¶¾ÇÖº¦ÒÁÀʵĺ˴òË㣬£¬£¬£¬£¬Ö¸±êÊÇÎ÷ÃÅ× SIMATIC S7-300ºÍS7-400¿É±à³ÌÂß¼­½ÚÔìÆ÷(PLCs)¡£¡£¡£¡£ ¡£¡£¡£Õâ¿î¶ñÒâÈí¼þͨ¹ý´úÌæ½«ÓëÎ÷ÃÅ×Ó STEP7½ÚÔìÆ÷±à³ÌÈí¼þÓйØÁªµÄÒ»¸öDLLÎļþ£¬£¬£¬£¬£¬½«¶ñÒâ´úÂë¼ÓÔØµ½Ö¸±êPLCsÉÏ¡£¡£¡£¡£ ¡£¡£¡£

2020Äê3Ô·Ý£¬£¬£¬£¬£¬AirbusÍøÂ簲ȫ¹«Ë¾±¨Â·³Æ´ÓÊ©ÄÍµÂµçÆøµÄEcoStruxure ControlExpert¹¤³ÌÈí¼þ£¨´ËǰÃûΪ Unity Pro£©Öз¢ÏÖÁËÒ»¸öÀàËÆ·ì϶ CVE-2020-7475£¬£¬£¬£¬£¬Ëü¿Éͨ¹ý´úÌæÓë¸Ã¹¤³ÌÈí¼þÓйØÁªµÄÆäÖÐÒ»¸öDLLÎļþ£¬£¬£¬£¬£¬½«¶ñÒâ´úÂëÉÏ´«µ½Modicon M340 ºÍM580 PLCsÖУ¬£¬£¬£¬£¬´Ó¶øÔì³É¹ý³Ì·ÛËéºÍÆäËüÇÖº¦¡£¡£¡£¡£ ¡£¡£¡£CVE-2020-7475ÊǶà¿îSchneider Electric²úÆ·ÖдæÔÚµÄ×¢Èë·ì϶¡£¡£¡£¡£ ¡£¡£¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶Ïò½ÚÔìÆ÷Öз¢ËͶñÒâ´úÂë¡£¡£¡£¡£ ¡£¡£¡£CVSSÆÀ·Ö9.8¡£¡£¡£¡£ ¡£¡£¡£

2020Äê5ÔÂ7ÈÕ£¬£¬£¬£¬£¬ÍøÂ簲ȫ¹«Ë¾TrustwaveµÄ×êÑÐÈËÔ±°µÊ¾£¬£¬£¬£¬£¬ËûÃÇÒ²´ÓÊ©Ä͵ÂÈí¼þ EcoStruxure MachineExpert£¨´ËǰÃûΪSoMachine£©Öз¢ÏÖÁËÒ»¸öÀàËÆ·ì϶£¬£¬£¬£¬£¬¸Ã·ì϶Ϊ CVE-2020-7489£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÀûÓø÷ì϶½«¶ñÒâ´úÂë´«Êäµ½½ÚÔìÆ÷¡£¡£¡£¡£ ¡£¡£¡£CVSSÆÀ·Ö9.8¡£¡£¡£¡£ ¡£¡£¡£


0x02 ´ëÖý¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬£¬£¬£¬£¬²¹¶¡»ñÈ¡Á´½Ó£º

https://www.se.com/ww/en/download/document/SEVD-2020-080-01/

https://www.se.com/ww/en/download/document/SEVD-2020-105-01/


0x03 ÓйØÐÂÎÅ


https://www.securityweek.com/another-stuxnet-style-vulnerability-found-schneider-electric-software


0x04 ²Î¿¼Á´½Ó


http://www.se.com/ww/en/download/document/SEVD-2020-080-01

https://www.se.com/ww/en/download/document/SEVD-2020-105-01


0x05 ¹¦·òÏß


2020-05-08 VSRC°ä²¼·ì϶¹«¸æ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website