ÿÖÜÉý¼¶²¼¸æ-2022-03-15
°ä²¼¹¦·ò 2022-03-15ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_ÈÕÖ¾ÎļþÐÅϢй¶ |
°²È«ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃÐÅϢй¶·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬¿É¶ÁÈ¡Ö÷ÕÅIPÖ÷»úÉϵÄÃô¸ÐÐÅÏ¢Îļþ¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_·ì϶ÀûÓÃ_ShiroAttack2¹¤¾ßʹÓÃ-±©Á¦ÆÆ½âÀûÓÃÁ´_Ô¶³Ì´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¿Ç°Ö÷»úÕýÊܵ½ApachShiroRememberme²ÎÊýºÅÁî×¢Èë´úÂëÖ´Ðй¥»÷ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬£¬£¬£¬£¬£¬±»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£½üÈÕ£¬£¬£¬£¬£¬£¬£¬£¬·¢ÏÖÕë¶Ô¸Ã·ì϶µÄÀûÓ÷½Ê½Òѱ»Ó×ÁìÓò´«²¼£¨·ì϶°æ±¾<=1.2.4£©£¬£¬£¬£¬£¬£¬£¬£¬ÇëÓйØÓû§¾¡¿ì²ÉÈ¡´ëÊ©¶Ô´Ë·ì϶½øÐзÀ»¤¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_·ì϶ÀûÓÃ_ShiroAttack2¹¤¾ßʹÓÃ-ÄÚ´æÂí×¢Èë_Ô¶³Ì´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¿Ç°Ö÷»úÕýÊܵ½ApachShiroRememberme²ÎÊýºÅÁî×¢Èë´úÂëÖ´Ðй¥»÷ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬£¬£¬£¬£¬£¬±»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£½üÈÕ£¬£¬£¬£¬£¬£¬£¬£¬·¢ÏÖÕë¶Ô¸Ã·ì϶µÄÀûÓ÷½Ê½Òѱ»Ó×ÁìÓò´«²¼£¨·ì϶°æ±¾<=1.2.4£©£¬£¬£¬£¬£¬£¬£¬£¬ÇëÓйØÓû§¾¡¿ì²ÉÈ¡´ëÊ©¶Ô´Ë·ì϶½øÐзÀ»¤¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | TCP_ºóÃÅ_Win32.Torchwood_ÏÎ½Ó |
°²È«ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½ºóÃÅÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅTorchwood¡£¡£¡£¡£¡£TorchwoodÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬£¬£¬£¬£¬£¬£¬ÔËÐкóÄܹ»ÆëÈ«½ÚÔì±»Ö²Èë»úе¡£¡£¡£¡£¡£ÖØÒªÍ¨¹ýCHMÎļþ´«²¼¡£¡£¡£¡£¡£ÔÊÐí¹¥»÷Õ߯ëÈ«½ÚÔì±»Ö²Èë»úе¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_LinuxºÅÁîÖ´ÐлØÏÔ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»ú³öÏÖÁËijЩLinuxºÅÁÈçw¡¢top¡¢uptimeµÈ£©Ö´ÐеĻØÏÔÁ÷Á¿£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬µ±Ç°ÏµÍ³Ê±¿Ì¡¢ÔËÐй¦·ò¡¢Óû§×ÜÏνÓÊý¡¢¾ùÔȸºÔصÈÐÅÏ¢ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_ElasticSearch_Ŀ¼´©Ô½·ì϶[CVE-2015-5531] |
°²È«ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½ÊÔͼͨ¹ýÀûÓÃElasticSearchĿ¼´©Ô½·ì϶½øÐй¥»÷µÄÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»ÀûÓø÷ì϶¶ÁÈ¡µ½²Ù×÷ϵͳÉϵÄËÁÒâÎļþ¡£¡£¡£¡£¡£ElasticSearchÊÇÒ»¸ö»ùÓÚLuceneµÄËÑË÷·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬£¬»ùÓÚJava¿ª·¢¡£¡£¡£¡£¡£ElasticSearch´æÔÚĿ¼´©Ô½·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓø÷ì϶¿É¶ÁÈ¡²Ù×÷ϵͳÉϵÄËÁÒâÎļþ¡£¡£¡£¡£¡£³¢ÊÔÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_elasticsearch-head_Ŀ¼´©Ô½·ì϶[CVE-2015-3337] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½ÊÔͼͨ¹ýÀûÓÃElasticSearchhead²å¼þĿ¼´©Ô½·ì϶½øÐй¥»÷µÄÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»ÀûÓø÷ì϶¶ÁÈ¡µ½²Ù×÷ϵͳÉϵÄËÁÒâÎļþ¡£¡£¡£¡£¡£ElasticSearchÊÇÒ»¸ö»ùÓÚLuceneµÄËÑË÷·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬£¬»ùÓÚJava¿ª·¢¡£¡£¡£¡£¡£ElasticSearchhead²å¼þ´æÔÚĿ¼´©Ô½·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓø÷ì϶¿É¶ÁÈ¡²Ù×÷ϵͳÉϵÄËÁÒâÎļþ¡£¡£¡£¡£¡£³¢ÊÔÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_Solr_SSRF·ì϶[CVE-2021-27905] |
°²È«ÀàÐÍ£º | ×¢Èë¹¥»÷ |
ÊÂÎñÃèÊö£º | ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬£¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃJava±àд¡¢ÔËÐÐÔÚServletÈÝÆ÷µÄÒ»¸ö¶ÀÁ¢µÄÈ«ÎÄËÑË÷·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬£¬ÊÇApacheLuceneÏîÖ÷ÕÅ¿ªÔ´ÆóÒµËÑË÷ƽ̨¡£¡£¡£¡£¡£¸Ã·ì϶ÊÇÓÉÓÚûÓжÔÊäÈëµÄÄÚÈݽøÐÐУÑ飬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚδÊÚȨµÄÇé¿öÏ£¬£¬£¬£¬£¬£¬£¬£¬»ú¹Ø¶ñÒâÊý¾ÝÖ´ÐÐSSRF¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬×îÖÕÔì³ÉËÁÒâ¶ÁÈ¡·þÎñÆ÷ÉϵÄÎļþ¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_java·´ÐòÁл¯_Ô¶³ÌºÅÁîÖ´ÐÐ |
°²È«ÀàÐÍ£º | ¿ÉÒÉÐÐΪ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅIP·¢ËÍ¿ÉÄÜ´æÔÚÔ¶³ÌºÅÁîÖ´ÐÐŲÓõÄjava·´ÐòÁл¯ÒªÇ󡣡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_POSCMS_ËÁÒâºÅÁîÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | POSCMS3.2.0°æ±¾Ç°Ì¨½çÃæ´æÔÚÔ¶³Ì´úÂëÖ´Ðзì϶¡£¡£¡£¡£¡£Ìض¨õè¾¶´«Èë¶ñÒâ²ÎÊý£¬£¬£¬£¬£¬£¬£¬£¬»áµ¼Ö´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬µ¼Ö¶ñÒâ¹¥»÷ÕßÄܹ»Í¨¹ý´Ë·ì϶дÈë¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬£¬²¢Äܹ»Í¨¹ý´Ë·ì϶½øÐÐgetshell |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_POSCMS_ÎļþÔ̺¬ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | POSCMS3.2.0°æ±¾ºó¶ÜÖÎÀí½çÃæµÄ¸½¼þÉÏ´«Ö°ÄÜÖ»ÊǶÔÎļþºó׺½øÐÐÁËÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬µ«²¢Ã»ÓжÔÎļþÄÚÈݽøÐÐÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬µ¼Ö¶ñÒâ¹¥»÷ÕßÄܹ»Í¨¹ý´Ë·ì϶ÉÏ´«¶ñÒâÎļþ£¬£¬£¬£¬£¬£¬£¬£¬²¢Äܹ»Í¨¹ýÀûÓôËÎļþ½øÐÐgetshell¡£¡£¡£¡£¡£ÒªÖ´Ðй¥»÷£¬£¬£¬£¬£¬£¬£¬£¬±ØÒª¿ÉÄܵǼµ½ºó¶ÜÖÎÀí½çÃæ£¬£¬£¬£¬£¬£¬£¬£¬ÇÒÓÐÉÏ´«ÎļþµÄȨÏÞ¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_mini_httpd_ËÁÒâÎļþ¶ÁÈ¡·ì϶[CVE-2018-18778][CNNVD-201810-1382] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | Mini_httpdÊÇÒ»¸ö΢Ð͵ÄHttp·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÕ¼ÓÃϵͳ×ÊÔ´½ÏÓ×µÄÇé¿öÏÂÄܹ»Î¬³Ö¿Ï¶¨Ë®Æ½µÄ»úÄÜ£¨Ô¼ÎªApacheµÄ90%£©£¬£¬£¬£¬£¬£¬£¬£¬Òò¶ø¿í·º±»¸÷ÀàIOT£¨Â·ÓÉÆ÷£¬£¬£¬£¬£¬£¬£¬£¬»¥»»Æ÷£¬£¬£¬£¬£¬£¬£¬£¬ÉãÏñÓŵȣ©×÷ΪǶÈëʽ·þÎñÆ÷¡£¡£¡£¡£¡£¶øÔ̺¬»ªÎª£¬£¬£¬£¬£¬£¬£¬£¬zyxel£¬£¬£¬£¬£¬£¬£¬£¬º£¿£¿£¿£¿£¿µÍþÊÓ£¬£¬£¬£¬£¬£¬£¬£¬Ê÷Ý®ÅɵÈÔÚÄڵij§ÉÌµÄÆìÏÂÉ豸¶¼ÔøÑ¡È¡Mini_httpd×é¼þ¡£¡£¡£¡£¡£ACMEmini_httpd<1.30°æ±¾´æÔÚÒ»¸öËÁÒâÎļþ¶ÁÈ¡·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶ԴÓÚÔÚmini_httpd¿ªÆôÐé¹¹Ö÷»úģʽµÄÇé¿öÏ£¬£¬£¬£¬£¬£¬£¬£¬Óû§ÒªÇóhttp://HOST/FILE½«»á½Ó¼ûµ½µ±Ç°Ä¿Â¼ÏµÄHOST/FILEÎļþ£¬£¬£¬£¬£¬£¬£¬£¬¶øµ±HOSTΪ¿Õ¡¢FILE=etc/passwdµÄʱ³½£¬£¬£¬£¬£¬£¬£¬£¬ÉÏÊöÓï¾äÁ˾ÖΪ/etc/passwd¡£¡£¡£¡£¡£¿£¿£¿£¿£¿É×÷Ϊ¾ø¶Ôõè¾¶£¬£¬£¬£¬£¬£¬£¬£¬¶ÁÈ¡µ½ÁË/etc/passwd£¬£¬£¬£¬£¬£¬£¬£¬Ôì³ÉËÁÒâÎļþ¶ÁÈ¡·ì϶¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_ToTolink_Technology·ÓÉÆ÷_δÊÚȨºÅÁî×¢Èë[CVE-2022-25134][CNNVD-202202-1645] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýCVE-2022-25134·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£¡£¡£¡£¡£TOTOLINKTechnology·ÓÉÆ÷¹Ì¼þÀï´æÔÚºÅÁî×¢Èë·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߿ɽè´ËÔ¶³ÌÖ´ÐÐϵͳºÅÁî¡£¡£¡£¡£¡£ÊÜÓ°Ïì·ÓÉÆ÷Ðͺż°Æä¹Ì¼þ°æ±¾Îª£ºA830R(V5.9c.4729_B20191112)¡¢3100R(V4.1.2cu.5050_B20200504)¡¢A950RG(V4.1.2cu.5161_B20200903)¡¢A800R(V4.1.2cu.5137_B20200730)¡¢A3000RU(V5.9c.5185_B20201128)¡¢A810R(V4.1.2cu.5182_B20201026)¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_·ì϶ÀûÓÃ_ShiroAttack¹¤¾ßʹÓÃ_Ô¶³Ì´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¿Ç°Ö÷»úÕýÊܵ½ApachShiroRememberme²ÎÊýºÅÁî×¢Èë´úÂëÖ´Ðй¥»÷ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬£¬£¬£¬£¬£¬±»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£½üÈÕ£¬£¬£¬£¬£¬£¬£¬£¬·¢ÏÖÕë¶Ô¸Ã·ì϶µÄÀûÓ÷½Ê½Òѱ»Ó×ÁìÓò´«²¼£¨·ì϶°æ±¾<=1.2.4£©£¬£¬£¬£¬£¬£¬£¬£¬ÇëÓйØÓû§¾¡¿ì²ÉÈ¡´ëÊ©¶Ô´Ë·ì϶½øÐзÀ»¤¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_ToTolink_EX200ÎÞÏßÖÐ¼ÌÆ÷_δÊÚȨºÅÁî×¢Èë[CVE-2021-43711][CNNVD-202201-147] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ToTolinkEx200ÊÇÖйúToTolink¹«Ë¾µÄÒ»¿î2.4GÎÞÏßÖÐ¼ÌÆ÷£¬£¬£¬£¬£¬£¬£¬£¬Ö¼ÔÚÀ©´óÏÖÓÐWi-FiÍøÂçµÄ¸²¸ÇÁìÓò¡£¡£¡£¡£¡£ToTolinkEx200¶ÔhttpGET²ÎÊý´¦Öò»µ±£¬£¬£¬£¬£¬£¬£¬£¬´æÔÚºÅÁî×¢Èë·ì϶£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂδÊÚȨԶ³ÌÖ´ÐкÅÁî¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÀûÓô˷ì϶עÈëÖ´ÐжñÒâºÅÁî¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_Apache_Log4j_ǶÌ×ʹÓÃÄÚÖÃlookupÌåʽ×Ö·û´® |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ApacheLog4jÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Í¼¿â£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖ§³Ôìô¶¯Ô¶³ÌÈÕÖ¾·þÎñÆ÷¡£¡£¡£¡£¡£´ËÊÂÎñ´ú±í·¢ÏÖÁËÔ´IPÖ÷»ú·¢ËÍÁËÂú×ãÄÚÖÃlookupÌåʽµÄ×Ö·û´®£¬£¬£¬£¬£¬£¬£¬£¬µ±Ö÷ÕÅIPÖ÷»úºó¶Ë½Ó¹Üµ½´ËÌåʽµÄ×Ö·û´®Ê±£¬£¬£¬£¬£¬£¬£¬£¬»á×Ô¶¯Å²ÓÃlookupÖ°ÄÜ¡£¡£¡£¡£¡£´ËÊÂÎñ¼ì²âµÄÊÇ¡°Ç¶Ìס±Ê¹ÓÃlookup¼ÇºÅµÄÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬´ËÐÐΪӵÓп϶¨·çÏÕ£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÄܻᱻ¹¥»÷ÕßÀÄÓ㬣¬£¬£¬£¬£¬£¬£¬ÈçÈÆ¹ýWAF¼ì²â£¬£¬£¬£¬£¬£¬£¬£¬²¢½øÐзÇÔ¤ÆÚµÄjndiŲÓᣡ£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_Apache_Log4j_ǶÌ×ʹÓÃÄÚÖÃlookupÌåʽ×Ö·û´® |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ApacheLog4jÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Í¼¿â£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖ§³Ôìô¶¯Ô¶³ÌÈÕÖ¾·þÎñÆ÷¡£¡£¡£¡£¡£´ËÊÂÎñ´ú±í·¢ÏÖÁËÔ´IPÖ÷»ú·¢ËÍÁËÂú×ãÄÚÖÃlookupÌåʽµÄ×Ö·û´®£¬£¬£¬£¬£¬£¬£¬£¬µ±Ö÷ÕÅIPÖ÷»úºó¶Ë½Ó¹Üµ½´ËÌåʽµÄ×Ö·û´®Ê±£¬£¬£¬£¬£¬£¬£¬£¬»á×Ô¶¯Å²ÓÃlookupÖ°ÄÜ¡£¡£¡£¡£¡£´ËÊÂÎñ¼ì²âµÄÊÇ¡°Ç¶Ìס±Ê¹ÓÃlookup¼ÇºÅµÄÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬´ËÐÐΪӵÓп϶¨·çÏÕ£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÄܻᱻ¹¥»÷ÕßÀÄÓ㬣¬£¬£¬£¬£¬£¬£¬ÈçÈÆ¹ýWAF¼ì²â£¬£¬£¬£¬£¬£¬£¬£¬²¢½øÐзÇÔ¤ÆÚµÄjndiŲÓᣡ£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |
ÊÂÎñÃû³Æ£º | HTTP_ͨÓÃ_Ŀ¼´©Ô½·ì϶[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚ³¢ÊÔ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐĿ¼´©Ô½·ì϶¹¥»÷³¢ÊÔµÄÐÐΪ¡£¡£¡£¡£¡£Ä¿Â¼´©Ô½·ì϶ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ½Ó¼ûÏÞ¶È£¬£¬£¬£¬£¬£¬£¬£¬¶Ôweb¸ùĿ¼ÒÔ±íµÄÎļþ¼Ð£¬£¬£¬£¬£¬£¬£¬£¬ËÁÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£¡£¡£¡£¡£´Ë¹æ¶¨ÊÇÒ»ÌõͨÓù涨£¬£¬£¬£¬£¬£¬£¬£¬ÆäËû·ì϶£¨ÉõÖÁһЩ0day·ì϶£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´ËÊÂÎñ±¨¾¯¡£¡£¡£¡£¡£ÓÉÓÚÕý³£ÒµÎñÖÐͨ³£²»»á²úÉú´ËÊÂÎñÌØµãµÄÁ÷Á¿£¬£¬£¬£¬£¬£¬£¬£¬ËùÒÔ±ØÒª³Áµã¹Ø×¢¡£¡£¡£¡£¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß½Ó¼ûÃô¸ÐÎļþ¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220315 |


¾©¹«Íø°²±¸11010802024551ºÅ