ÿÖÜÉý¼¶Í¨¸æ-2022-09-06
Ðû²¼Ê±¼ä 2022-09-06
ʼþÃû³Æ£º | HTTP_Îļþ²Ù×÷¹¥»÷_VMware_vCenter_Server_ÎļþÉÏ´«[CVE-2021-22005] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | VMwareÊÇÒ»¼ÒÔÆ»ù´¡¼Ü¹¹ºÍÒÆ¶¯ÉÌÎñ½â¾ö·½°¸³§ÉÌ£¬Ìṩ»ùÓÚVMwareµÄÐéÄ⻯½â¾ö·½°¸¡£2021Äê9ÔÂ22ÈÕ£¬VMware¹Ù·½Ðû²¼Äþ¾²Í¨¸æ£¬Åû¶Á˰üÂÞCVE-2021-22005VMwarevCenterServerÈÎÒâÎļþÉÏ´«Â©¶´ÔÚÄڵĶàÆäÖиßΣÑÏÖØÂ©¶´¡£Êܸé¶´µÄÓ°Ïì°æ±¾ÎªVMwarevCenterServer7.0ϵÁÐ<7.0U2c,VMwarevCenterServer6.7ϵÁÐ<6.7U3o,ÔÚCVE-2021-22005ÖУ¬¹¥»÷Õ߿ɽṹ¶ñÒâÇëÇó£¬Í¨¹ývCenterÖеÄAnalytics·þÎñ£¬¿ÉÉÏ´«¶ñÒâÎļþ£¬´Ó¶øÔì³ÉÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Zabbix_СÓÚ4.4_δÊÚȨ·ÃÎÊ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ZabbixÊÇÀÍÑάÑÇZabbixSIA¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ¼à¿ØÏµÍ³¡£¸Ãϵͳ¿É¼àÊÓÖÖÖÖÍøÂç²ÎÊý£¬²¢Ìṩ֪ͨ»úÖÆÈÃϵͳ¹ÜÀíÔ±¿ìËÙ¶¨Î»¡¢½â¾ö´æÔÚµÄÖÖÖÖÎÊÌâ¡£Zabbix´æÔÚÒ»¸öδÊÚȨ·ÃÎÊ©¶´£¬Í¨¹ý¸Ã©¶´£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾ÊÚȨµÄÇé¿öÏ·ÃÎÊZabbix·þÎñÆ÷ÉϵÄÊý¾Ý£¬µ¼ÖÂÃô¸ÐÐÅϢй¶¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | TCP_ľÂíºóÃÅ_wmRat(ÂûÁ黨)_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½wmRatÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËwmRat¡£wmRatÊÇÂûÁ黨×éÖ¯ËùʹÓÃÁËÒ»¸öÇáÁ¿»¯ºóÃÅ£¬»ùÓÚCSharpÓïÑÔ£¬ÔËÐк󣬿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | TCP_½©Ê¬ÍøÂç_Orchard_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½½©Ê¬ÍøÂçOrchardÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçOrchard¡£OrchardÊÇ2021Äê2Ô·ºÆðµÄÒ»¸ö½©Ê¬ÍøÂ磬ʹÓÃDGA¼¼Êõ·´¿¹¼ì²â¡£ºËÐĹ¦Ð§ÔÚÊܺ¦Õß»úÆ÷Éϰ²×°ÖÖÖÖ¶ñÒâÈí¼þ£¬Ä¿Ç°ÎªÖ¹£¬Ö÷ÒªÏÂÔØÃÅÂÞ±ÒÍÚ¿óÈí¼þ½øÐÐÍÚ¿ó¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | DNS_¿ÉÒÉÐÐΪ_oast_´øÍâ²éѯ |
Äþ¾²ÀàÐÍ£º | CGI¹¥»÷ |
ʼþÃèÊö£º | oastÊÇÒ»¸öÃâ·ÑµÄ¡¢ÎÞÐè×¢²á¾Í¿ÉÒÔ¿ìËÙʹÓõÄDNSLogƽ̨£¬Äܹ»¶Ô·¢Ë͹ýÈ¥µÄDNSÇëÇó½øÐмǼ¡£¾³£±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐÐÃüÁî½á¹ûµÄ»ØÏÔ¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | DNS_¿ÉÒÉÐÐΪ_interact_´øÍâ²éѯ |
Äþ¾²ÀàÐÍ£º | CGI¹¥»÷ |
ʼþÃèÊö£º | interact.shÊÇinteract.sh¹¤¾ßÅäÌ×µÄDNSLogƽ̨£¬Äܹ»¶Ô·¢Ë͹ýÈ¥µÄDNSÇëÇó½øÐмǼ¡£¾³£±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐÐÃüÁî½á¹ûµÄ»ØÏÔ¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Struts2_S2-045_´úÂëÖ´ÐÐ[CVE-2017-5638] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£ÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¹¥»÷Õß¿ÉÒÔÔÚÎļþÉÏ´«Ê±Í¨¹ý½á¹¹HTTPÇëÇóÍ·ÖеÄContent-TypeÖµ¿ÉÄÜÔì³ÉÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£Â©¶´´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10ʵÑé²âÊÔÑéÖ¤ApacheStruts2S2-045Ô¶³Ì´úÂëÖ´ÐЩ¶´£¬²âÊÔ²»¾ßÓй¥»÷ÐÔ£¬µ«¿ÉÄÜ̻¶ϵͳ´àÈõÐÔÌØÕ÷¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ʼþÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Struts2_S2-046_´úÂëÖ´ÐÐ[CVE-2017-5638] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£¹¥»÷ÕßÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬½á¹¹¶ñÒâOGNLʹµÃÉÏ´«ÎļþµÄ´óС£¨ÓÉContent-LengthÍ·Ö¸¶¨£©´óÓÚStruts2ÔÊÐíµÄ×î´ó¾Þϸ2GB¡£Â©¶´´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£ |
¸üÐÂʱ¼ä£º | 20220906 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | HTTP_ÐÅϢй¶_Ŀ¼±éÀú[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʵÑé¶ÔÄ¿µÄIPÖ÷»ú½øÐÐĿ¼´©Ô½Â©¶´¹¥»÷ʵÑéµÄÐÐΪ¡£Ä¿Â¼´©Ô½Â©¶´ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ·ÃÎÊÏÞÖÆ£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬ÈÎÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£´Ë¹æÔòÊÇÒ»ÌõͨÓùæÔò£¬ÆäËû©¶´£¨ÉõÖÁһЩ0day©¶´£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´Ëʼþ±¨¾¯¡£ÓÉÓÚÕý³£ÒµÎñÖÐÒ»°ã²»»á·¢Éú´ËʼþÌØÕ÷µÄÁ÷Á¿£¬ËùÒÔÐèÒªÖØµã¹Ø×¢¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß·ÃÎÊÃô¸ÐÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20220906 |