ÿÖÜÉý¼¶²¼¸æ-2022-09-13
°ä²¼¹¦·ò 2022-09-13
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_ManageEngine_·ÇÊÚȨ½Ó¼û[CVE-2022-36923][CNNVD-202208-2747] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ZohoManageEngineÊÇÒ»Ì×ϵͳÖÎÀíÈí¼þ¡£¡£¡£¡£¡£¡£¡£ÔÚCVE-2022-36923ÖУ¬£¬£¬£¬£¬¹¥»÷Õ߿ɻú¹Ø¶ñÒâÒªÇ󣬣¬£¬£¬£¬»ñÈ¡µ½ÓйØAPIKEY£¬£¬£¬£¬£¬´Ó¶ø¿ÉÀûÓûñÈ¡µ½µÄkey½øÐÐÓйØapiŲÓ㬣¬£¬£¬£¬Ôì³ÉÃô¸ÐÐÅϢй©µÈ¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_ÆëÖεﱤ»ú_·ÇÊÚȨ½Ó¼û |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | Õã½ÆëÖοƼ¼¹É·ÝÓÐÏÞ¹«Ë¾ÊÇÒ»¼ÒÖØÒª¾ÓªÍÆËã»úÈíÓ²¼þ¡¢ÍøÂç²úÆ·µÄ¼¼Êõ¿ª·¢µÈÏîÖ÷ÕŹ«Ë¾¡£¡£¡£¡£¡£¡£¡£ÆëÖÎÔËάµï±¤»ú·þÎñ¶Ë´æÔÚËÁÒâÓû§µÇ¼ϵͳ·ì϶£¬£¬£¬£¬£¬½Ó¼ûÌØ¶¨µÄUrl¼´¿É»ñµÃºó¶ÜȨÏÞ¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_PHPCMS_V9_register_´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃPHPCMSv9registerËÁÒâÎļþÉÏ´«Getshell·ì϶¶ÔÖ÷ÕÅÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£¹¥»÷³É¹¦ºóÄܹ»»ñµÃÖ¸±êÖ÷»úµÄWebshell£¬£¬£¬£¬£¬½øÒ»²½»ñµÃÍøÕ¾µÄ½ÚÔìȨ¡£¡£¡£¡£¡£¡£¡£PHPCMSÊÇ¿ªÔ´µÄÕûվϵͳ¡£¡£¡£¡£¡£¡£¡£PHPCMSv9.6registerº¯Êý´æÔÚÉè¼ÆÈ±µã£¬£¬£¬£¬£¬info[content]²ÎÊý¹ýÂ˲»Ñϸñ£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»Í¨¹ý¸Ã²ÎÊýÔ¶³ÌÔ̺¬ÎļþÖ±½Ó»ñµÃÍøÕ¾µÄWebshell¡£¡£¡£¡£¡£¡£¡£Ô¶³ÌÔ̺¬Îļþ£¬£¬£¬£¬£¬»ñÈ¡ÍøÕ¾Webshell¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_ShardingSphere_UI_YAML_ºÅÁîÖ´ÐÐ[CVE-2020-1947] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½ÊÔIJÀûÓÃApache-ShardingSphere-UI-YAMLÔ¶³Ì´úÂëÖ´ÐÐ.Apache¹Ù·½°ä²¼ÁËShardingSphereа汾½¨¸´ÁËÒ»¸öYAML½âÎöµ¼ÖµÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2020-1947£©¡£¡£¡£¡£¡£¡£¡£ApacheShardingSphereÊÇÒ»Ì׿ªÔ´µÄÉ¢²¼Ê½Êý¾Ý¿âÖÐÑë¼þ½â¾ö¹æ»®×é³ÉµÄÉú̬Ȧ£¬£¬£¬£¬£¬ËüÓÉSharding-JDBC¡¢Sharding-ProxyºÍSharding-Sidecar£¨¹æ»®ÖУ©Õâ3¿îÏ໥¶ÀÁ¢£¬£¬£¬£¬£¬È´ÓÖ¿ÉÄÜ»ìºÏ²¿Êð¹²Í¬Ê¹ÓõIJúÆ·×é³É¡£¡£¡£¡£¡£¡£¡£ËüÃǾùÌṩ³ß¶È»¯µÄÊý¾Ý·Ô쬡¢É¢²¼Ê½ÊÂÎñºÍÊý¾Ý¿âÖÎÀíÖ°ÄÜ£¬£¬£¬£¬£¬¿ÉºÏÓÃÓÚÈçJavaͬ¹¹¡¢Ò칹˵»°¡¢ÔÆÔÉúµÈ¸÷Àà¶àÑù»¯µÄÀûÓó¡¾°¡£¡£¡£¡£¡£¡£¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß½øÐÐ×¢Èë¹¥»÷£¬£¬£¬£¬£¬²¢ÇÒµÁÈ¡Êý¾Ý¿âÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_×¢Èë¹¥»÷_Apache_SkyWalking_GraphQL½Ó¿Ú_SQL×¢Èë[CVE-2020-9483/CVE-2020-13921][CNNVD-202006-1863/CNNVD-202008-152] |
°²È«ÀàÐÍ£º | ×¢Èë¹¥»÷ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÊÔͼͨ¹ýApache_SkyWalkingGraphQL½Ó¿ÚµÄSQL×¢Èë·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£ApacheSkyWalkingÊÇÒ»¿îÀûÓûúÄÜ¼à¿Ø£¨APM£©¹¤¾ß£¬£¬£¬£¬£¬¶Ô΢·þÎñ¡¢ÔÆÔÉúºÍÈÝÆ÷»¯ÀûÓÃÌṩ×Ô¶¯»¯¡¢¸ß»úÄÜµÄ¼à¿Ø¹æ»®¡£¡£¡£¡£¡£¡£¡£Æä¹Ù·½ÍøÕ¾ÏÔʾ£¬£¬£¬£¬£¬´óÁ¿µÄ¹úÄÚ»¥ÁªÍø¡¢ÒøÐÓ×¢Ãñº½µÈÁìÓòµÄ¹«Ë¾ÔÚʹÓô˹¤¾ß¡£¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷ÕßÄܹ»Í¨¹ýApacheSkyWalkingĬÈÏÊ¢¿ªµÄδÊÚȨGraphQL½Ó¿Ú»ú¹Ø¶ñÒâÒªÇó°ü½øÐÐ×¢È룬£¬£¬£¬£¬³É¹¦ÀûÓô˷ì϶¿ÉÔì³ÉÃô¸ÐÊý¾Ýй©¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»Í¨¹ýÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Microsoft_Exchange-SERVER_·þÎñÆ÷¶ËÒªÇóαÔì[CVE-2021-26855] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | µ±Ç°Ö÷»úÔÚÔâ·êMicrosoft-Exchange-SERVER_·þÎñÆ÷¶ËÒªÇóαÔì¹¥»÷ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Microsoft_Exchange-SERVER_·þÎñÆ÷¶ËÒªÇóαÔì[CVE-2021-26855][CNNVD-202103-192] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | µ±Ç°Ö÷»úÔÚÔâ·êMicrosoft-Exchange-SERVER_·þÎñÆ÷¶ËÒªÇóαÔì¹¥»÷¸Ã·ì϶ÊÇExchangeÖеÄËÁÒâÎļþдÈë·ì϶¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶±ØÒª½øÐÐÉí·ÝÈÏÖ¤£¬£¬£¬£¬£¬ÀûÓô˷ì϶Äܹ»½«ÎļþдÈë·þÎñÆ÷ÉϵÄÈκÎõè¾¶¡£¡£¡£¡£¡£¡£¡£²¢Äܹ»½áºÏÀûÓÃCVE-2021-26855SSRF·ì϶»òÈÆ¹ýȨÏÞÈÏÖ¤½øÐÐÎļþдÈë¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_Éè¼ÆÈ±µã_ÌìÈÚÐÅÊý¾Ý·Àй©ϵͳ_ԽȨÅú¸ÄÖÎÀíÔ±_Âß¼/Éè¼ÆÃýÎó |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´ipÔÚÀûÓÃÌìÈÚÐÅÊý¾Ý·Àй©ϵͳµÄԽȨ·ì϶½øÐÐÖÎÀíÔ±ÃÜÂëÅú¸Ä£»£»£»£»£»£»£»£»ÌìÈÚÐÅÊý¾Ý·Àй©ϵͳ(¼ò³Æ:TopDLP)ÊÇÒÔÉî¶ÈÄÚÈݼø±ð¼¼ÊõΪÖ÷Ìâ,ÔÚÊý¾Ý´æ´¢¡¢´«ÊäºÍʹÓùý³ÌÖÐ,·¢ÏÖ²¢¼ø±ðÃô¸ÐÊý¾ÝÒþ»¼,È·±£Ãô¸ÐÊý¾ÝºÏ·¨Ê¹ÓÃ,Ô¤·ÀÃô¸ÐÊý¾Ýй©µÄÊý¾Ý°²È«±£»£»£»£»£»£»£»£»¤ÏµÍ³¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Microsoft_Exchange-Server_´úÂëÖ´ÐÐ[CVE-2020-16875][CNNVD-202009-374] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ÓÉÓÚ¶Ôcmdlet²ÎÊýµÄÑéÖ¤²»ÕýÈ·£¬£¬£¬£¬£¬MicrosoftExchange·þÎñÆ÷ÖдæÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¡£¡£¡£¡£¡£¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»ÔÚϵͳÓû§µÄ¸ßµÍÎÄÖÐÔËÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£ÀûÓô˷ì϶±ØÒªÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§ÓµÓÐÊܵ½ÍþвµÄÌØ¶¨Exchange½ÇÉ«¡£¡£¡£¡£¡£¡£¡£´Ë°²È«¸üÐÂͨ¹ý¸üÕýMicrosoftExchange´¦ÖÃcmdlet²ÎÊýµÄ·½Ê½À´½¨¸´´Ë·ì϶¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_Îļþ²Ù×÷¹¥»÷_CLTPHP_V5.8_ºó¶ÜËÁÒâÎļþɾ³ý |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | CLTPHPÊÇ»ùÓÚThinkPHP5¿ª·¢£¬£¬£¬£¬£¬ºó¶ÜѡȡLayui¿ò¼ÜµÄÄÚÈÝÖÎÀíϵͳ¡£¡£¡£¡£¡£¡£¡£CLTPHP5.8¼°Ö®Ç°°æ±¾´æÔÚºó¶ÜËÁÒâÎļþɾ³ý·ì϶£¬£¬£¬£¬£¬Í¨¹ý»ú¹Ø¶ñÒâpayload¹¥»÷Õß¿Éɾ³ýϵͳÖеÄËÁÒâÎļþ¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_SpamTitanÍø¹Ø_´úÂëÖ´ÐÐ[CVE-2020-11699][CNNVD-202009-1082] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | SpamTitanÍø¹ØÊÇÖ°ÄÜ׳´óµÄ·´À¬»øÓʼþÉ豸£¬£¬£¬£¬£¬ËüÎªÍøÂçÖÎÀíÔ±ÌṩÁË¿í·ºµÄ¹¤¾ßÀ´½ÚÔìÓʼþÁ÷²¢Ô¤·ÀÓк¦µÄµç×ÓÓʼþºÍ¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚ´æÔÚ´úÂëȱµã£¬£¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ý»ú¹Ø¶ñÒâpayload£¬£¬£¬£¬£¬Ê¹µÃÖ¸±êÖ÷»úÖ´ÐжñÒâºÅÁî¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_AXIS_´úÂëÖ´ÐÐ[CVE-2019-0227] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃHTTP_Apache_Axis_Ô¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£ApacheAxisÊÇÃÀ¹ú°¢ÅÁÆæ£¨Apache£©Èí¼þ»ù½ð»áµÄÒ»¸ö¿ªÔ´¡¢»ùÓÚXMLµÄWeb·þÎñ¼Ü¹¹¡£¡£¡£¡£¡£¡£¡£¸Ã²úÆ·Ô̺¬ÁËJavaºÍC++˵»°ÊµÏÖµÄSOAP·þÎñÆ÷£¬£¬£¬£¬£¬ÒÔ¼°¸÷À๫Ó÷þÎñ¼°API£¬£¬£¬£¬£¬ÒÔÌìÉúºÍ²¿ÊðWeb·þÎñÀûÓᣡ£¡£¡£¡£¡£¡£Axis¸½´øµÄĬÈÏ·þÎñStockQuoteService.jwsÔ̺¬Ò»¸öÓ²±àÂëµÄHTTPURL£¬£¬£¬£¬£¬¿ÉÓÃÓÚ´¥·¢HTTPÒªÇ󡣡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»Í¨¹ýÓòÃû£¨www.xmltoday.com£©ÊÕÊÜ»òÕßͨ¹ýARPºýŪ·þÎñÆ÷´Ó¶øÖ´ÐÐMITM¹¥»÷£¬£¬£¬£¬£¬²¢½«HTTPÒªÇó³Á¶¨Ïòµ½¶ñÒâWeb·þÎñÆ÷£¬£¬£¬£¬£¬ÔÚApacheAxis·þÎñÆ÷ÉÏÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£¹¥»÷³É¹¦£¬£¬£¬£¬£¬¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Weblogic_wls-wsat_´úÂëÖ´ÐÐ[CVE-2017-3506/10271] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPµØÖ·Ö÷»úÔÚÏòÖ÷ÕÅIPµØÖ·Ö÷»úÌáÒéWeblogicwls-wsatÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£OracleWeblogicServerÊÇÀûÓ÷¨Ê½·þÎñÆ÷¡£¡£¡£¡£¡£¡£¡£OracleWeblogicServer10.3.6.0¡¢12.2.1.2¡¢12.2.1.1¡¢12.1.3.0°æ±¾´æÔڸ÷ì϶¡£¡£¡£¡£¡£¡£¡£WeblogicWLS×é¼þÔÊÐíÔ¶³Ì¹¥»÷ÕßÖ´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÏòWeblogic·þÎñÆ÷·¢Ë;«ÐÄ»ú¹ØµÄHTTP¶ñÒâÒªÇ󣬣¬£¬£¬£¬¹¥»÷³É¹¦Äܹ»»ñÈ¡µ½·þÎñÆ÷µÄWebshell£¬£¬£¬£¬£¬½øÒ»²½Äܹ»»ñµÃÖ¸±ê·þÎñÆ÷µÄ½ÚÔìȨ¡£¡£¡£¡£¡£¡£¡£³¢ÊÔÀûÓÃWeblogicwls-wsatÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_TP-Link_NC220_setsysname.fcgi_ºÅÁî×¢Èë[CVE-2020-12109][CNNVD-202005-007] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | TP-LinkNC200µÈ¶¼ÊÇÖйúÆÕÁª£¨TP-Link£©¹«Ë¾µÄÒ»¿îÍøÂçÉãÏñ»ú¡£¡£¡£¡£¡£¡£¡£¶à¿îTP-Link²úÆ·ÖеÄipcamera¶þ½øÔìÎļþµÄswSystemSetProductAliasCheck²½Öè´æÔÚ²Ù×÷ϵͳºÅÁî×¢Èë·ì϶¡£¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õ߿ɽèÖúÌØÔìHTTPPOSTÒªÇóÀûÓø÷ì϶ÒÔrootÓû§Éí·ÝÔÚϵͳÉÏÖ´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_Shiro_Éí·ÝÑéÖ¤ÈÆ¹ý[CVE-2020-11989][CNNVD-202006-1556] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬£¬£¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬ÊÚȨµÈ¡£¡£¡£¡£¡£¡£¡£¶ÔÓÚApacheShiro1.5.3֮ǰµÄ°æ±¾£¬£¬£¬£¬£¬µ±½«ApacheShiroÓëSpring½ÚÔìÆ÷һ·ʹÓÃʱ£¬£¬£¬£¬£¬¹¥»÷ÕßÌØÔìÒªÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤ÈÆ¹ý¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Nagios_XI_mibs.php_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-5791][CNNVD-202010-1115] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | NagiosXIÊÇÒ»¸ö³ÉÁ¢ÔÚNagiosÖ÷ÌâÉÏµÄÆóÒµ¼¶¼à²âºÍ±¨¾¯¹æ»®µÄ¿ªÔ´×é¼þ¡£¡£¡£¡£¡£¡£¡£Ö°ÄÜÔ̺¬PHPÍøÕ¾½çÃæ¡¢×ۺϲû·¢Í¼¡¢¿É¶¨ÔìµÄÒDZí°å¡¢ÍøÂç½á¹¹¡¢ÅäÖÃGUI(ͼÐÎÓû§½Ó¿Ú)¡¢Óû§ÖÎÀíµÈ¡£¡£¡£¡£¡£¡£¡£NagiosXI5.7.3ÖдæÔÚÔ¶³Ì´úÂëÖ´Ðа²È«·ì϶£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÀûÓô˷ì϶ÒÔ¡°apache¡±Óû§Ö´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_OFBiz_rmi·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2021-26295][CNNVD-202103-1262] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ApacheOFBiz´æÔÚRMI·´ÐòÁл¯Ç°Ì¨ºÅÁîÖ´ÐУ¬£¬£¬£¬£¬Î´¾Éí·ÝÑéÖ¤¹¥»÷Õ߿ɻú¹Ø¶ñÒâÒªÇ󣬣¬£¬£¬£¬´¥·¢·´ÐòÁл¯£¬£¬£¬£¬£¬´Ó¶øÔì³ÉËÁÒâ´úÂëÖ´ÐУ¬£¬£¬£¬£¬½ÚÔì·þÎñÆ÷¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÉèÖÃȱµã_ÉîÕÛ·þ_SSLVPN_changetelnum.csp_ËÁÒâÕË»§°ó¶¨ÊÖ»úºÅÅú¸Ä |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ÉîÕÛ·þSSLVPNµÄchangetelnum.csp´æÔÚÂ߼ԽȨ·ì϶£¬£¬£¬£¬£¬¹¥»÷ÕߵǼ³É¹¦ºó¿ÉÅú¸ÄËÁÒâÓû§°ó¶¨µÄÊÖ»úºÅÂë¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_Apache-Airflow_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2022-24288][CNNVD-202202-1940] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ÔÚApacheAirflow2.2.4֮ǰµÄ°æ±¾ÖУ¬£¬£¬£¬£¬Ò»Ð©Ê¾ÀýDAGûÓÐÕýÈ·ËãÕÊÓû§ÌṩµÄ²ÎÊý£¬£¬£¬£¬£¬Ê¹ÆäÈÝÒ×Êܵ½À´×ÔWebUIµÄOSºÅÁî×¢ÈëµÄÓ°Ïì¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_Shiro_v1.7.1ÒÔÏÂ_·ÇÊÚȨ½Ó¼û[CVE-2020-17523][CNNVD-202102-238] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ApacheShiroÊÇÒ»¸ö׳´óÇÒÒ×ÓõÄJava°²È«¿ò¼Ü£¬£¬£¬£¬£¬ËüÄܹ»ÓÃÀ´Ö´ÐÐÉí·ÝÑéÖ¤¡¢ÊÚȨ¡¢ÃÜÂëºÍ»á»°ÖÎÀí¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°³£¼û¼¯³ÉÓÚ¸÷ÀàÀûÓÃÖнøÐÐÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬ÊÚȨµÈ¡£¡£¡£¡£¡£¡£¡£¶ÔÓÚApacheShiro1.7.1֮ǰµÄ°æ±¾£¬£¬£¬£¬£¬µ±½«ApacheShiroÓëSpring½ÚÔìÆ÷һ·ʹÓÃʱ£¬£¬£¬£¬£¬¹¥»÷ÕßÌØÔìÒªÇó¿ÉÄܻᵼÖÂÉí·ÝÑéÖ¤ÈÆ¹ý¡£¡£¡£¡£¡£¡£¡£ |
¸üй¦·ò£º | 20220913 |


¾©¹«Íø°²±¸11010802024551ºÅ