2020-12-22

Ðû²¼Ê±¼ä 2020-12-23

ÐÂÔöʼþ


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_ColdFusion8_FCKEditor_ÎļþÉÏ´«Â©¶´[CVE-2009-2265][CNNVD-200907-058]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

CKSourceFCKeditor£¨ÏÖ³ÆCKEditor£©ÊDz¨À¼CKSource¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ£¬»ùÓÚÍøÒ³µÄÎÄ×ֱ༭Æ÷¡£¸Ã±à¼­Æ÷¾ßÓÐÇáÁ¿»¯£¬Ò×ÓÚ°²×°µÈÌصã¡£FCKeditorµÄ±à¼­Æ÷/filemanager/browser/default/connectors/php/connector.phpÄ£¿éÖдæÔÚµÄÎļþÉÏ´«ÏÞÖÆ©¶´£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓø鶴ÉÏ´«¶ñÒâÎļþ¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Xiaomi_MiRouter3_ÃüÁîÖ´ÐЩ¶´[CVE-2018-13023][CNNVD-201811-787]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

XiaomiMiRouterÊÇÖйúСÃ׿Ƽ¼£¨Xiaomi£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£XiaomiMiRouter32.22.15°æ±¾ÖеÄwifi_access¶Ëµã´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´¡£¹¥»÷Õß¿Éͨ¹ý½á¹¹¶ñÒâµÄÇëÇóÀûÓø鶴ִÐÐϵͳÃüÁî¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_Zivif_PR115_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2017-17105][CNNVD-201712-147]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃZivif_PR115µÄ©¶´½øÐÐÃüÁîÖ´Ðй¥»÷ £»ZivifPR115-204-P-RSÊÇÒ»¿îÍøÂçÉãÏñ»úÉ豸¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ

HTTP_ZyXEL_P660HN_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2017-18370][CNNVD-201905-075]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃZyXEL_P660HNµÄÃüÁîÖ´ÐЩ¶´½øÐй¥»÷ £»ZyXELP660HN-T1AÊÇÖйų́ÍåºÏÇÚ£¨ZyXEL£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£ZyXELP660HN-T1A£¨hardware2°æ±¾£¬TrueOnline¹Ì¼þ200AAJS3D0°æ±¾£©ÖеÄRemoteSystemLogת·¢¹¦Ð§´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Xiaomi_MiTV_ÃüÁîÖ´ÐЩ¶´[CVE-2018-16130][CNNVD-201811-797]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

XiaomiMiRouterÊÇÖйúСÃ׿Ƽ¼£¨Xiaomi£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷¡£XiaomiMiRouter32.22.15°æ±¾ÖеÄrequest_mitv¶Ëµã´æÔÚ²Ù×÷ϵͳÃüÁî×¢È멶´¡£¹¥»÷Õß¿Éͨ¹ý½á¹¹¶ñÒâÇëÇóÀ´ÊµÏÖÖ´ÐÐÈÎÒâϵͳÃüÁî¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_WordPress_Plugin_DZS_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2014-9094][CNNVD-201411-506]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWordPress_Plugin_DZSµÄ©¶´½øÐÐÃüÁîÖ´ÐÐ £»WordPressÊÇʹÓÃPHPÓïÑÔ¿ª·¢µÄ²©¿Íƽ̨£¬Óû§¿ÉÒÔÔÚÖ§³ÖPHPºÍMySQLÊý¾Ý¿âµÄ·þÎñÆ÷ÉϼÜÉèÊôÓÚ×Ô¼ºµÄÍøÕ¾¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_WordPress_Easy_WP_SMTPÈÕÖ¾Îļþ̽²â

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWordPressµÄEasy_WP_SMTP²å¼þÈÕ־̻¶ÔÚÍâ½øÐÐδÊÚȨ·ÃÎʼ°ÃÜÂë¶ñÒâÐÞ¸Ä £»EasyWPSMTPÔÊÐíÄúÅäÖúÍͨ¹ýSMTP·þÎñÆ÷·¢ËÍËùÓÐÍâ·¢µç×ÓÓʼþ¡£ÕâÑù¿ÉÒÔ·ÀÖ¹ÄúµÄµç×ÓÓʼþ½øÈëÊÕ¼þÈ˵ÄÀ¬»øÓʼþÎļþ¼Ð¡£

¸üÐÂʱ¼ä£º

20201222


ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_XStream_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-26258][CVE-2020-26259][CNNVD-202012-1083]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

XStreamСÓÚ1.4.15°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¸Ã©¶´¿ÉÄÜÔÊÐíÔ¶³Ì¹¥»÷Õß½öͨ¹ýÀûÓÃÒÑ´¦ÖõÄÊäÈëÁ÷À´ÔËÐÐÈÎÒâµÄShellÃüÁî¡£

¸üÐÂʱ¼ä£º

20201222


ÐÞ¸Äʼþ


ʼþÃû³Æ£º

HTTP_Confluence_Unauthenticated_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2019-3396]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_Confluence_δÊÚȨ_Ô¶³ÌÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ£¬ConfluenceÊÇÒ»¸öרҵµÄÆóҵ֪ʶ¹ÜÀíÓëЭͬÈí¼þ£¬³£ÓÃÓÚ¹¹½¨ÆóÒµwiki¡£ËüÇ¿´óµÄ±à¼­ºÍÕ¾µã¹ÜÀíÌØÕ÷Äܹ»×ÊÖúÍŶӳÉÔ±Ö®¼ä¹²ÏíÐÅÏ¢¡¢ÎĵµÐ­×÷¡¢¼¯ÌåÌÖÂÛ£¬ÐÅÏ¢ÍÆËÍ¡£ÀûÓø鶴¿ÉÒÔ¶ÁÈ¡·þÎñÆ÷ÉÏÈÎÒâÎļþ£¬½ø¶ø¿ÉÒÔ°üÂÞ¶ñÒâÎļþÀ´Ö´ÐдúÂë¡£¿ÉÄÜÔì³ÉÃô¸ÐÐÅϢй¶£¬·þÎñÆ÷±»¿ØÖƵÈÑÏÖغó¹û¡£

¸üÐÂʱ¼ä£º

20201222