ÿÖÜÉý¼¶Í¨¸æ-2022-07-05
Ðû²¼Ê±¼ä 2022-07-05ÐÂÔöʼþ
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_fastjson_1.2.60_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃfastjsonJSON·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ£¬ÊÔͼͨ¹ý´«È뾫ÐĽṹµÄ¶ñÒâ´úÂë»òÃüÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_fastjson_1.2.67_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjson´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_ľÂí_BeamMiner_ÍÚ¿óÀÖ³É(BEAM) |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö: | ¼ì²âµ½¿ó»úÏò¿ó³ØÌá½»ÍÚ¿ó½á¹ûµÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBeamMinerÍÚ¿óľÂí¡£BeamMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£BeamÊÇ»ùÓÚMimbleWimbleÐÒ鿪·¢µÄ¼ÓÃÜ»õ±Ò£¬¾ßÓÐÇ¿Òþ˽ÐÔ¡¢Ìæ´úÐÔºÍÀ©Õ¹ÐÔ¡£BeamËùÓн»Ò׶¼Ä¬ÈÏÊÇ˽Ãܵġ£Ð½ڵã¼ÓÈëÍøÂçÎÞÐèͬ²½Õû¸ö½»Ò×ÀúÊ·£¬¿ÉÒÔÇëÇóͬ²½Ö»°üÂÞϵͳ״̬µÄѹËõÀúÊ·¼Ç¼ºÍÇø¿éÍ·£¬´Ó¶øʵÏÖ¿ìËÙͬ²½¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_ºóÃÅ_Win32.WarZoneRat_Á¬½Ó(ɨÃè) |
Äþ¾²ÀàÐÍ£º | Äþ¾²É¨Ãè |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÔÚ¶ÔÄ¿µÄIPÖ÷»ú½øÐÐɨÃè¡£WarZoneRatÊÇÒ»¸ö¹¦Ð§Ç¿´óµÄÔ¶¿Ø£¬ÔËÐкó¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£±¾Ê¼þ±¨¾¯²»ÊÇÕæʵ¹¥»÷£¬½ö½öÒâζ×ÅÔ´IPÖ÷»úÔÚ¶ÔÄ¿µÄIPÖ÷»ú½øÐÐɨÃè¡£Ô´IPÒ»°ãÊôÓÚShodanɨÃèÖ÷»ú£¬Ä¿µÄIPÊÇ¿Í»§Ö÷»ú¡£Ô´IPÖ÷»úÄ£·ÂWarZoneRatÑù±¾ÏòÄ¿µÄIPÖ÷»ú·¢ËÍÉÏÏß±¨ÎÄ£¬Èç¹ûÊÕµ½ÆÚÍûµÄ·µ»ØÊý¾Ý£¬¼´ÈÏΪĿµÄIPÖ÷»úÉÏÔËÐÐ×ÅGh0st¿ØÖƶˣ¬ÊÇWarZoneRatµÄC&C·þÎñ¡£Shodan¾ÍÊÇͨ¹ýÕâÖÖɨÃèÀ´»ñÈ¡¶ñÒâÈí¼þµÄC&C·þÎñÆ÷£¬³ýShodanÍ⣬ÆäËüһЩÍþвÇ鱨¹«Ë¾µÄIPÖ÷»úÒ²ÔÚ½øÐÐ×ÅÕâÖÖɨÃè¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_WordPress-3DPrint-Lite_ÈÎÒâÎļþÉÏ´« |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | WordPress3DPrintLiteVersion1.9.1.4°æ±¾ÖеÄ3dprint-lite-functions.phpÎļþ´æÔÚÎļþÉÏ´«Â©¶´£¬¹¥»÷Õßͨ¹ý½á¹¹ÇëÇó°ü¿ÉÒÔÉÏ´«ÈÎÒâÎļþ»ñÈ¡·þÎñÆ÷ȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Webmin_Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2019-12840][CNNVD-201906-632] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWebmin1.910ºÍ¸üÔç°æ±¾ÖеÄupdate.cgiÔÊÐíÔ¶³Ì¾¹ýÉí·ÝÑéÖ¤µÄÓû§Ö´ÐÐÈÎÒâÃüÁî¡£WebminÊǹ¦Ð§×îÇ¿´óµÄ»ùÓÚWebµÄUnixϵͳ¹ÜÀí¹¤¾ß¡£¹ÜÀíԱͨ¹ýä¯ÀÀÆ÷·ÃÎÊWebminµÄÖÖÖÖ¹ÜÀí¹¦Ð§²¢Íê³ÉÏàÓ¦µÄ¹ÜÀíÐж¯¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_Java·´ÐòÁл¯_CommonsCollections11_ÀûÓÃÁ´¹¥»÷ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃCommonsCollections11µÄJava·´ÐòÁл¯ÀûÓÃÁ´¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£Èô·ÃÎʵÄÓ¦ÓôæÔÚ©¶´JAVA·´ÐòÁл¯Â©¶´ÇÒʹÓÃÁËCommonsCollections3.1-3.2.1£¬¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß£¬Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_URLClassLoaderÔ¶³Ì¼ÓÔضñÒâÀà |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃURLClassLoaderµÄJavaÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_JNDIÔ¶³Ì¼ÓÔضñÒâÀà |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃJNDIµÄlookupÒªÁìÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_Shiro_JNDIÔ¶³Ì¼ÓÔضñÒâÀà |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃShiroJNDIµÄlookupÒªÁìÔ¶³Ì¼ÓÔضñÒâÀà¶ÔÄ¿µÄÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£¹¥»÷Õß¿ÉÒÔ·¢Ë;«ÐĽṹµÄJavapayload£¬Ô¶³Ì¼ÓÔضñÒâÀàÖ´ÐÐÈÎÒâ´úÂë»òÃüÁî¡£Ô¶³ÌÖ´ÐÐÈÎÒâ´úÂ룬»ñȡϵͳ¿ØÖÆȨ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Íò»§OA_fileUpload.controller_ÈÎÒâÎļþÉÏ´«Â©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | Íò»§OA´æÔÚÒ»¸öÈÎÒâÎļþÉÏ´«Â©¶´£¬¹¥»÷Õß¿ÉÒÔͨ¹ýfileUpload.controller½Ó¿ÚÉÏ´«¶ñÒâÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ͨ´ïOA_update.php_Îļþ°üÂÞ©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ͨ´ïOAv11.8ÒÔϵİ汾´æÔÚÒ»¸öÎļþ°üÂÞ©¶´¡£¹¥»÷Õß¿ÉÒÔͨ¹ýÀûÓÃPHPµÄ.user.iniÎļþÀ´°üÂÞÆäËû¶ñÒâÎļþÈƹýͨ´ïOAµÄÎļþÉÏ´«ÏÞÖÆ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14060][CNNVD-202006-997] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄoadd.org.apache.xalan.lib.sql.JNDIConnectionPool´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14062][CNNVD-202006-996] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄcom.sun.org.apache.xalan.internal.lib.sql.JNDIConnectionPool´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-14195][CNNVD-202006-1070] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄorg.jsecurity.realm.jndi.JndiRealmFactory´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2020-24750][CNNVD-202009-1066] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FasterXMLjackson-databind2.x,2.9.10.5°æ±¾Ö®Ç°µÄcom.pastdev.httpcomponents.configuration.JndiConfiguration´íÎóµØ´¦ÖÃÁËÓëoaddÏà¹ØµÄÐòÁл¯gadgetsºÍÊäÈëÖ®¼äµÄ½»»¥ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Ê¼þ_GitLab_Ô¶³ÌÃüÁîÖ´ÐÐ[CVE-2018-19571][CVE-2018-19585] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | GitLabÊÇÒ»¸öÓÃÓÚ¶ÑÕ»¹ÜÀíϵͳµÄ¿ªÔ´ÏîÄ¿£¬ÆäʹÓÃGit×÷Ϊ´úÂë¹ÜÀí¹¤¾ß£¬¿Éͨ¹ýWeb½çÃæ·ÃÎʹûÈ»»ò˽ÈËÏîÄ¿¡£ÔÚ11.4.7°æ±¾Ö®Ç°£¬¸ÃÏîÄ¿´æÔÚÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¹¥»÷Õ߿ɽṹ¶ñÒâpayloadÒÔ»ñÈ¡·þÎñÆ÷ȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Mitel_MiVoice_Connect_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2022-29499][CNNVD-202204-4387] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ä¿µÄipΪ¹¥»÷Õßip£¬Í¨¹ýÔ´ip´æÔÚÊý¾ÝÑéÖ¤²»ÕýÈ·µÄ©¶´£¬¿ÉÒÔͨ¹ývtest.phpµÄget_url²ÎÊý½øÐе±µØÎļþÀûÓ㬴ӶøʹµÃÔ´ipÏòÄ¿µÄip£¨¹¥»÷Õߣ©·¢ËÍÃô¸ÐÐÅÏ¢£¬»ò·´µ¯shell£¬µ¼Ö½øÒ»²½¹¥»÷¡£MitelMiVoiceConnectÊǼÓÄôóMitelNetworks¹«Ë¾µÄÒ»¿îÓÃÓÚ¼¯ÖйÜÀíMitelNetworksµÄºô½Ð´¦ÖúÍÐ×÷¹¤¾ßµÄÈí¼þ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_СÓãÒ×Á¬ÊÓƵϵͳ_LUA½Å±¾ÅäÖôíÎó_Ô¶³ÌÃüÁîÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | СÓãÒ×Á¬ÊÓƵ»áÒéϵͳLUA½Å±¾È¨ÏÞ·ÖÅä²»Í×,µ¼ÖÂÈÎÒâÓû§¿ÉÀûÓÃrootȨÏÞÖ´ÐÐÃüÁ¹¥»÷ÕßÀûÓôË©¶´¿ÉÍêÈ«»ñȡϵͳȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÖÐÔ¶÷è÷ë_iAuditµï±¤»ú_get_luser_by_sshport.php_Ô¶³ÌÃüÁîÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ÖÐÔ¶÷è÷ëiAuditµï±¤»úget_luser_by_sshport.phpÎļþ´æÔÚÃüÁîÆ´½Ó£¬¹¥»÷Õßͨ¹ý©¶´¿É»ñÈ¡·þÎñÆ÷ȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÌìÈÚÐÅ_TopApp-LB_enable_tool_debug.php_Ô¶³ÌÃüÁîÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ÌìÈÚÐÅTopSec-LBenable_tool_debug.phpÎļþ´æÔÚÔ¶³ÌÃüÁîÖ´ÐЩ¶´£¬Í¨¹ýÃüÁîÆ´½Ó¹¥»÷Õß¿ÉÒÔÖ´ÐÐÈÎÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶¹ÜÀíϵͳ_sys_user.conf_Õ˺ÅÃÜÂëй© |
Äþ¾²ÀàÐÍ£º | CGI¹¥»÷ |
ʼþÃèÊö: | ÉîÐÅ·þÓ¦Óý»¸¶¹ÜÀíϵͳÎļþsys_user.conf¿ÉÔÚδÊÚȨµÄÇé¿öÏÂÖ±½Ó·ÃÎÊ£¬µ¼ÖÂÕ˺ÅÃÜÂëй©¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ_download.php_ÈÎÒâÎļþ¶Áȡ©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳdownload.phpÎļþ´æÔÚÈÎÒâÎļþ¶Áȡ©¶´£¬¹¥»÷Õßͨ¹ý©¶´¿ÉÒÔÏÂÔØ·þÎñÆ÷ÈÎÒâÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ_login.php_ÃüÁî×¢È멶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ÉîÐÅ·þÓ¦Óý»¸¶±¨±íϵͳ£¨4.5ÒÔÏ°汾£©´æÔÚÒ»¸öÃüÁî×¢È멶´£¬¸Ã©¶´Ô´ÓÚ¶Ô´«ÈëµÄuserPswºÍuserID¹ýÂ˲»ÑϽ÷µ¼Ö£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÌØÖÆÇëÇóÖ´ÐÐÈÎÒâÃüÁî¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_ÂÌÃËUTS×ÛºÏÍþв̽Õë_ÐÅϢй¶ |
Äþ¾²ÀàÐÍ£º | CGI¹¥»÷ |
ʼþÃèÊö: | ÂÌÃËUTS×ÛºÏÍþв̽Õëij¸ö½Ó¿Úδ×öÊÚȨµ¼ÖÂδÊÚȨ·ÃÎÊ£¬ÆäÖаüÂÞ²¿ÃÅÕ˺ÅÃÜÂëÐÅÏ¢£¬¹¥»÷Õß¿ÉÀûÓÃÀ´½øÐеǼÈƹý¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | DNS_¿ÉÒÉÐÐΪ_GotoHTTPÔ¶³ÌÁ¬½Ó¹¤¾ßʹÓà |
Äþ¾²ÀàÐÍ£º | ¿ÉÒÉÐÐΪ |
ʼþÃèÊö: | GotohttpÊÇÒ»¿îÔ¶³Ì×ÀÃ湤¾ß£¬¿ÉÄÜΪºÚ¿ÍÕýÔÚʹÓᣠ|
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Microsoft_Exchange_Server_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-16875][CNNVD-202009-374] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ÓÉÓÚ¶Ôcmdlet²ÎÊýµÄÑéÖ¤²»ÕýÈ·£¬MicrosoftExchange·þÎñÆ÷ÖдæÔÚÔ¶³ÌÖ´ÐдúÂ멶´¡£ÀÖ³ÉÀûÓôË©¶´µÄ¹¥»÷Õß¿ÉÒÔÔÚϵͳÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐÈÎÒâ´úÂë¡£ÀûÓôË©¶´ÐèÒªÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§¾ßÓÐÊܵ½ÍþвµÄÌض¨Exchange½ÇÉ«¡£´ËÄþ¾²¸üÐÂͨ¹ý¸üÕýMicrosoftExchange´¦ÖÃcmdlet²ÎÊýµÄ·½Ê½À´ÐÞ¸´´Ë©¶´¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_CMS-Discuz:X_uc_centerºǫ́´úÂëÖ´ÐÐ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | Discuz!MLϵͳÖУ¬Í¨¹ýºǫ́ÐÞ¸ÄUcenterÊý¾Ý¿âÁ¬½ÓÐÅÏ¢£¬¿É½«¶ñÒâ´úÂëдÈëconfig/config_ucenter.phpÎļþÖУ¬µ¼Ö´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Jackson_·´ÐòÁл¯_´úÂëÖ´ÐÐ[CVE-2019-14540][CNNVD-201909-716] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | JacksonÊǵ±Ç°ÓõıÈÁ¦¹ã·ºµÄ£¬ÓÃÀ´ÐòÁл¯ºÍ·´ÐòÁл¯jsonµÄJava¿ªÔ´¿ò¼Ü¡£ÔÚ2.9.10֮ǰµÄFasterXMLjackson-databindÖÐÓÉÓÚcom.zaxxer.hikari.HikariConfig´¦ÖÃÊý¾ÝÎÊÌ⣬´æÔÚ·´ÐòÁл¯Â©¶´ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_CMS_Discuz!X3.4_ÈÎÒâÎļþɾ³ýÅäºÏinstall¹ý³Ìgetshell |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | Discuz!MLϵͳ°²×°ºóδµÇ½ºǫ́ʱ£¬¿ÉÀûÓÃÎļþɾ³ý©¶´É¾µôinstall.lockÎļþ£¬Èƹý¶Ô°²×°Íê³ÉµÄÅжÏÄܹ»ÔÙ½øÐа²×°µÄ¹ý³Ì£¬È»ºó½«¶ñÒâ´úÂëдÈëÅäÖÃÎļþÖдӶøÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_Eyoucms_1.4.3_ÈÎÒâÎļþдÈë |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | EyouCmsÊÇ»ùÓÚTP5.0¿ò¼ÜΪºËÐÄ¿ª·¢µÄÃâ·Ñ+¿ªÔ´µÄÆóÒµÄÚÈݹÜÀíϵͳ£¬×¨×¢ÆóÒµ½¨Õ¾Óû§ÐèÇóÌṩº£Á¿¸÷ÐÐҵģ°å¡£ÔÚ1.4.3°æ±¾ÒÔÇ°£¬¸ÃϵͳÖдæÔÚÈÎÒâÎļþдÈ멶´£¬¹¥»÷Õ߿ɽṹ¶ñÒâpayload½øÐÐÎļþдÈë²Ù×÷¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_ľÂíºóÃÅ_Covenant_ÐÄÌø°ü_Á¬½ÓC2·þÎñÆ÷ |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö: | CovenantÊÇÒ»¸ö.NET¿ª·¢µÄC2(commandandcontrol)¿ò¼Ü£¬Ê¹ÓÃ.NETCoreµÄ¿ª·¢»·¾³£¬²»½öÖ§³ÖLinux£¬MacOSºÍWindows£¬»¹Ö§³ÖdockerÈÝÆ÷¡£CovenantÖ§³Ö¶¯Ì¬±àÒ룬Äܹ»½«ÊäÈëµÄC#´úÂëÉÏ´«ÖÁC2Server£¬»ñµÃ±àÒëºóµÄÎļþ²¢Ê¹ÓÃAssembly.Load()´ÓÄÚ´æ½øÐмÓÔØ¡£¸Ãʼþ±íÃ÷£¬CovenantµÄÉú³ÉÎïGruntsÕýÔÚÀûÓÃÐÄÌø±¨ÎÄÓëC2·þÎñÆ÷±£³ÖÁ¬½Ó¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_fastjson_1.2.47_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.47ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_fastjson_·´ÐòÁл¯¼ÓÔØBCEL |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.24ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_ºóÃÅ_Linux.DDoS.Gafgyt_¿ØÖÆÃüÁî |
Äþ¾²ÀàÐÍ£º | ÆäËûʼþ |
ʼþÃèÊö: | ¼ì²âµ½Gafgyt·þÎñÆ÷ÊÔͼ·¢ËÍÃüÁî¸øGafgyt£¬Ä¿µÄIPÖ÷»ú±»Ö²ÈëÁËGafgyt¡£DDoS.GafgytÊÇÒ»¸öÀàLinuxƽ̨ϵĽ©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±ê»úÆ÷ÌᳫDDoS¹¥»÷¡£¶ÔÖ¸¶¨Ä¿±êÖ÷»úÌᳫDDoS¹¥»÷¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_fastjson_1.2.45_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2017-18349] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | FastjsonÊÇÒ»¸öJava¿â£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ£¬fastjsonÔÚ1.2.24ÒÔ¼°Ö®Ç°°æ±¾´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂ룬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_fastjson_1.2.62_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃfastjsonJSON·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐЩ¶´¶ÔÄ¿µÄIPÖ÷»ú½øÐй¥»÷µÄÐÐΪ£¬ÊÔͼͨ¹ý´«È뾫ÐĽṹµÄ¶ñÒâ´úÂë»òÃüÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_ͨÓÃ_Ŀ¼´©Ô½Â©¶´[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʵÑé¶ÔÄ¿µÄIPÖ÷»ú½øÐÐĿ¼´©Ô½Â©¶´¹¥»÷ʵÑéµÄÐÐΪ¡£Ä¿Â¼´©Ô½Â©¶´ÄÜʹ¹¥»÷ÕßÈƹýWeb·þÎñÆ÷µÄ·ÃÎÊÏÞÖÆ£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬ÈÎÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£´Ë¹æÔòÊÇÒ»ÌõͨÓùæÔò£¬ÆäËû©¶´£¨ÉõÖÁһЩ0day©¶´£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´Ëʼþ±¨¾¯¡£ÓÉÓÚÕý³£ÒµÎñÖÐÒ»°ã²»»á·¢Éú´ËʼþÌØÕ÷µÄÁ÷Á¿£¬ËùÒÔÐèÒªÖصã¹Ø×¢¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß·ÃÎÊÃô¸ÐÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_ͨ´ïOA_ÈÎÒâÎļþÉÏ´«/Îļþ°üÂÞ©¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö: | ͨ´ïOAÊÇÒ»Ìװ칫ϵͳ¡£ÓÉÓÚͨ´ïOAÖдæÔÚµÄÁ½Ã¶Â©¶´(ÎļþÉÏ´«Â©¶´£¬Îļþ°üÂÞ©¶´)£¬¹¥»÷Õß¿Éͨ¹ýÕâÁ½Ã¶Â©¶´ÊµÏÖÔ¶³ÌÃüÁîÖ´ÐС£/ispirit/im/upload.php´æÔÚÈƹýµÇ¼(ÈÎÒâÎļþÉÏ´«Â©¶´)£¬½áºÏgateway.php´¦´æÔÚµÄÎļþ°üÂÞ©¶´£¬×îÖÕµ¼ÖÂgetshell¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_Fastjson_dnslog̽²â |
Äþ¾²ÀàÐÍ£º | Äþ¾²Éó¼Æ |
ʼþÃèÊö: | ¼ì²âµ½Ô´ipÕýÔÚÀûÓÃdnslog̽²âÖ÷»úºó¶ËÊÇ·ñÊÇfastjson£» |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | HTTP_¿ÉÒÉÐÐΪ_Fastjson©¶´_±àÂëÀûÓà |
Äþ¾²ÀàÐÍ£º | ¿ÉÒÉÐÐΪ |
ʼþÃèÊö: | FastJsonÊÇ°¢Àï°Í°ÍµÄ¿ªÔ´JSON½âÎö¿â£¬Ëü¿ÉÒÔ½âÎöJSON¸ñʽµÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌص㣬ӦÓ÷¶Î§ºÜ¹ã¡£¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£fastjson¿É½ÓÊܲ¢½âÎöhex±àÂëÄÚÈÝ£¬Òò´Ë¹¥»÷Õß¿ÉÀûÓÃhex±àÂëÈƹý¼ì²âÉ豸¡£ |
¸üÐÂʱ¼ä£º | 20220705 |
ʼþÃû³Æ£º | TCP_½©Ê¬ÍøÂç_BlackMoon_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ÆäËûʼþ |
ʼþÃèÊö: | ¼ì²âµ½BlackMoonÔ¶¿ØÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçBlackMoon¡£BlackMoonÖ÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±êÌᳫDDoS¹¥»÷£¬Í¨¹ý¹ØÁª·ÖÎö·¢ÏÖ£¬¸ÃBlackMoon½©Ê¬ÍøÂçÁ÷´«·½Ê½Ö®Ò»ÊǽèÖú¶ÀÀÇ£¨Rovnix£©½©Ê¬ÍøÂç½øÐÐÁ÷´«¡£¶ÀÀǽ©Ê¬ÍøÂçͨ¹ý´ø¶¾¼¤»î¹¤¾ß£¨¿ñ·ç¼¤»î¡¢Ð¡Âí¼¤»î¡¢KMSµÈ£©½øÐÐÁ÷´«£¬³£±»ÓÃÀ´Íƹ㲡¶¾ºÍÁ÷Ã¥Èí¼þ¡£ |
¸üÐÂʱ¼ä£º | 20220705 |