ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ13ÖÜ

Ðû²¼Ê±¼ä 2021-03-29

> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2021Äê03ÔÂ22ÈÕÖÁ03ÔÂ28ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´61¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇRusavtomatika Weintek EasyWeb cMT CVE-2021-27446´úÂë×¢È멶´£»XStream CVE-2021-21346·´ÐòÁл¯´úÂëÖ´ÐЩ¶´£»Foxit PhantomPDF U3DBrowserÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´£»NETGEAR ProSAFE Network Management System MFileUploadControllerÎļþÉÏ´«Â©¶´£»Apache SpamAssassin .cf×¢È멶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇESET·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄClubhouse·Ö·¢BlackRock£»McAfeeÅû¶Զ³Ì¼à¿ØÈí¼þNetop Vision Pro´æÔÚ¶à¸ö©¶´£»²®Ã÷º²Òé»áÔ±¹¤Òò²Ù×÷ʧÎó¹ûÈ»´óÁ¿ÈõÊÆȺÌåµÄ¸öÈËÐÅÏ¢£»KasperskyÐû²¼2020ÄêICSÐÐÒµµÄ̬ÊÆ·ÖÎö³ÂËߣ»Î¢Èí¾¯¸æ½üÆÚµöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£


> ÖØÒªÄþ¾²Â©¶´Áбí


1.Rusavtomatika Weintek EasyWeb cMT CVE-2021-27446´úÂë×¢È멶´


Rusavtomatika Weintek EasyWeb cMT´æÔÚ´úÂë×¢È멶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔROOTÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://us-cert.cisa.gov/ics/advisories/icsa-21-082-01


2.XStream CVE-2021-21346·´ÐòÁл¯´úÂëÖ´ÐЩ¶´


XStream´æÔÚ·´ÐòÁл¯Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

http://x-stream.github.io/changes.html#1.4.16


3.Foxit PhantomPDF U3DBrowserÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´


Foxit PhantomPDF U3DBrowser´æÔÚÄÚ´æÆÆ»µÂ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÎļþÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.zerodayinitiative.com/advisories/ZDI-21-353/


4.NETGEAR ProSAFE Network Management System MFileUploadControllerÎļþÉÏ´«Â©¶´


NETGEAR ProSAFE Network Management System MFileUploadController´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÉÏ´«Îļþ£¬²¢ÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.zerodayinitiative.com/advisories/ZDI-21-357/


5.Apache SpamAssassin .cf×¢È멶´


Apache SpamAssassin´æÔÚ.cf×¢È멶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿É×¢Èë¶ñÒâÃüÁî²¢Ö´ÐС£

https://s.apache.org/3r1wh


> ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢ESET·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄClubhouse·Ö·¢BlackRock


1.jpg


ÉÏÖÜÎ壬ESETµÄÑо¿ÈËÔ±·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄAndroid°æClubhouse·Ö·¢BlackRock Trojan¡£ClubhouseÊÇÒôƵÁÄÌìÓ¦Ó㬵«Ä¿Ç°Ö»ÔÚiOSÉϵ±Ç°¿ÉÓã¬ÉÐδÐû²¼Android°æ±¾µÄClubhouse¡£BlackRock×î³õÓÚ2020Äê5Ô±»·¢ÏÖ£¬Ö¼ÔÚÇÔÈ¡Óû§ÔÚÖÖÖÖ»¥ÁªÍøÓ¦Óã¨Áè¼Ý458¸ö£©ÉϵÄÐÅÏ¢¡£¸ÃľÂíÄܹ»À¹½ØºÍ¸Ä¶¯SMSÏûÏ¢¡¢Òþ²Ø֪ͨ¡¢ÔÚÓû§ÔËÐÐɱ¶¾Èí¼þʱ½«ÆäÖض¨Ïòµ½É豸Ö÷ÆÁÄ»ºÍÔ¶³ÌËø¶¨ÆÁÄ»¡£ 


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/fraudsters-jump-on-clubhouse-hype-to-push-malicious-android-app/


2¡¢McAfeeÅû¶Զ³Ì¼à¿ØÈí¼þNetop Vision Pro´æÔÚ¶à¸ö©¶´


2.jpg


McAfeeÅû¶Զ³Ì¼à¿ØÈí¼þNetop Vision Pro´æÔÚ¶à¸ö¿ÉÓÃÀ´½Ù³ÖÄ¿±êµçÄԵĩ¶´¡£ÕâЩ©¶´·Ö±ðΪȨÏÞ·ÖÅ䩶´£¨CVE-2021-27192£©¡¢Ä¬ÈÏȨÏÞ´íÎó£¨CVE-2021-27193£©¡¢ÒÔÃ÷ÎÄ´«ÊäµÄÃô¸ÐÐÅÏ¢£¨CVE-2021-27194£©ºÍÊÚȨÎÊÌ⣨CVE-2021-27195£©¡£ºÚ¿Í¿ÉÓÃÕâЩ©¶´½øÐÐÌáȨºÍÖ´ÐÐÔ¶³Ì´úÂ룬»ñµÃ¶ÔÄ¿±êϵͳµÄÍêÈ«¿ØÖÆȨ²¢ÆôÓÃÍøÂçÉãÏñÍ·ºÍÂó¿Ë·ç¡£Ä¿Ç°£¬NetopÒÑÐÞ¸´²¿ÃÅ©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/popular-remote-student-learning-program-found-to-be-riddled-with-security-holes/


3¡¢²®Ã÷º²Òé»áÔ±¹¤Òò²Ù×÷ʧÎó¹ûÈ»´óÁ¿ÈõÊÆȺÌåµÄ¸öÈËÐÅÏ¢


3.jpg


²®Ã÷º²Òé»áÔÚ3ÔÂ19ÈÕÐÇÆÚÎå³Æ£¬ÒòÔ±¹¤²Ù×÷ʧÎóµ¼Ö´óÁ¿ÈõÊÆȺÌåµÄ¸öÈËÐÅÏ¢±»¹ûÈ»¡£¾Ý³Æ´Ë´Î鶵ÄÊÇÓÐȨ»ñµÃÃâ·Ñ°ÍʿͨÐÐÖ¤µÄ¶ùͯµÄÏêϸÐÅÏ¢¡£¸ÃÊÐÌåÏÖ£¬ÆäÔÚ·¢ÏÖй¶ºóÁ¢¿Ì½ÓÄÉÁË´ëÊ©£¬Êý¾Ý»¹Î´±»ÏÂÔØ£¬¶øÇÒÓÉÓÚ´ËʼþµÄ¹æÄ£ºÍÑÏÖØÐÔÖÊ£¬ÏÖÒÑ֪ͨÂôÁ¦¼à¶½µÄÐÅϢרԱ°ì¹«ÊÒ£¨ICO£©¡£


Ô­ÎÄÁ´½Ó£º

https://www.birminghammail.co.uk/news/midlands-news/details-vulnerable-kids-uploaded-birmingham-20217314


4¡¢KasperskyÐû²¼2020ÄêICSÐÐÒµµÄ̬ÊÆ·ÖÎö³ÂËß


4.jpg


KasperskyÐû²¼ÁË2020ÄêICSÐÐÒµµÄ̬ÊÆ·ÖÎö³ÂËß¡£¸Ã³ÂËß·ÖÎöÁËÓÃÓÚÉè¼Æ¡¢ÅäÖúÍά»¤¹¤Òµ¿ØÖÆÉ豸ºÍÈí¼þµÄ¼ÆËã»úËùÊܵ½µÄÍøÂçÍþв¡£³ÂËßÖ¸³ö£¬ÔÚ2020ÄêÏ°ëÄ꣬ÔÚICS¹¤³ÌºÍ¼¯³ÉÐÐÒµÖÐ39.3£¥µÄ¼ÆËã»úÊܵ½Á˶ñÒâÈí¼þ¹¥»÷£¬Óë2020ÄêÉÏ°ëÄ꣨31.5£¥£©Ïà±ÈÓÐËùÔö¼Ó£¬ÆäÖн¨Öþ×Ô¶¯»¯¡¢Æû³µÖÆÔì¡¢ÄÜԴʯÓͺÍÌìÈ»ÆøÐÐÒµÔâµ½µÄ¹¥»÷Ôö¶à¡£2020ÄêÏ°ëÄ꣬Õë¶ÔÀ­¶¡ÃÀÖÞ¡¢Öж«¡¢ÑÇÖ޺ͱ±ÃÀµÄ¹¥»÷´ÎÊýÔö¶à£¬Õë¶Ô·ÇÖÞ¡¢¶íÂÞ˹ºÍÅ·Ö޵Ĺ¥»÷ÊýÁ¿ÓÐËù¼õÉÙ¡£


Ô­ÎÄÁ´½Ó£º

https://ics-cert.kaspersky.com/reports/2021/03/17/threat-landscape-for-the-ics-engineering-and-integration-sector-2020/


5¡¢Î¢Èí¾¯¸æ½üÆÚµöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý


5.jpg


×ÔÈ¥Äê12ÔÂÒÔÀ´£¬µöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý¡£WMC GlobalÓÚÈ¥ÄêÄê³õ·¢ÏָõöÓã»î¶¯£¬Î±×°³Éαװ³ÉÊÓƵ»áÒé·þÎñ¡¢Äþ¾²½â¾ö·½°¸ºÍÉú²ú¹¤¾ßÀ´ÃÔ»óÊܺ¦Õß¡£È¥Äê12Ô£¬ºÚ¿Íð³äÁËOutlook Web AppÀ´ÆÛÆ­Ä¿±êÓû§ÊäÈëƾ¾Ý£¬ÏÖÔÚÄê1Ô¸ÄΪģ·ÂOffice 365À´ÇÔȡƾ¾Ý¡£´ËÍ⣬΢Èí·¢Ïָû»¹ÀûÓÃÁËAmazon Simple Email Service£¨SES£©ºÍAppspotÔƼÆËãƽ̨À´·¢ËÍÍøÂçµöÓãµç×ÓÓʼþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/microsoft-warns-of-phishing-attacks-bypassing-email-gateways/