ÿÖÜÉý¼¶Í¨¸æ-2022-09-06

Ðû²¼Ê±¼ä 2022-09-06
ÐÂÔöʼþ

 

ʼþÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_VMware_vCenter_Server_ÎļþÉÏ´«[CVE-2021-22005]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

VMwareÊÇÒ»¼ÒÔÆ»ù´¡¼Ü¹¹ºÍÒÆ¶¯ÉÌÎñ½â¾ö·½°¸³§ÉÌ£¬Ìṩ»ùÓÚVMwareµÄÐéÄ⻯½â¾ö·½°¸¡£2021Äê9ÔÂ22ÈÕ£¬VMware¹Ù·½Ðû²¼Äþ¾²Í¨¸æ£¬Åû¶Á˰üÂÞCVE-2021-22005VMwarevCenterServerÈÎÒâÎļþÉÏ´«Â©¶´ÔÚÄڵĶàÆäÖиßΣÑÏÖØÂ©¶´¡£Êܸé¶´µÄÓ°Ïì°æ±¾ÎªVMwarevCenterServer7.0ϵÁÐ<7.0U2c,VMwarevCenterServer6.7ϵÁÐ<6.7U3o,ÔÚCVE-2021-22005ÖУ¬¹¥»÷Õ߿ɽṹ¶ñÒâÇëÇó£¬Í¨¹ývCenterÖеÄAnalytics·þÎñ£¬¿ÉÉÏ´«¶ñÒâÎļþ£¬´Ó¶øÔì³ÉÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Zabbix_СÓÚ4.4_δÊÚȨ·ÃÎÊ

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

ZabbixÊÇÀ­ÍÑάÑÇZabbixSIA¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ¼à¿ØÏµÍ³¡£¸Ãϵͳ¿É¼àÊÓÖÖÖÖÍøÂç²ÎÊý£¬²¢Ìṩ֪ͨ»úÖÆÈÃϵͳ¹ÜÀíÔ±¿ìËÙ¶¨Î»¡¢½â¾ö´æÔÚµÄÖÖÖÖÎÊÌâ¡£Zabbix´æÔÚÒ»¸öδÊÚȨ·ÃÎÊ©¶´£¬Í¨¹ý¸Ã©¶´£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾­ÊÚȨµÄÇé¿öÏ·ÃÎÊZabbix·þÎñÆ÷ÉϵÄÊý¾Ý£¬µ¼ÖÂÃô¸ÐÐÅϢй¶¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

TCP_ľÂíºóÃÅ_wmRat(ÂûÁ黨)_Á¬½Ó

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½wmRatÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËwmRat¡£wmRatÊÇÂûÁ黨×éÖ¯ËùʹÓÃÁËÒ»¸öÇáÁ¿»¯ºóÃÅ£¬»ùÓÚCSharpÓïÑÔ£¬ÔËÐк󣬿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

TCP_½©Ê¬ÍøÂç_Orchard_Á¬½Ó

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½½©Ê¬ÍøÂçOrchardÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçOrchard¡£OrchardÊÇ2021Äê2Ô·ºÆðµÄÒ»¸ö½©Ê¬ÍøÂ磬ʹÓÃDGA¼¼Êõ·´¿¹¼ì²â¡£ºËÐĹ¦Ð§ÔÚÊܺ¦Õß»úÆ÷Éϰ²×°ÖÖÖÖ¶ñÒâÈí¼þ£¬Ä¿Ç°ÎªÖ¹£¬Ö÷ÒªÏÂÔØÃÅÂÞ±ÒÍÚ¿óÈí¼þ½øÐÐÍÚ¿ó¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_oast_´øÍâ²éѯ

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö£º

oastÊÇÒ»¸öÃâ·ÑµÄ¡¢ÎÞÐè×¢²á¾Í¿ÉÒÔ¿ìËÙʹÓõÄDNSLogƽ̨£¬Äܹ»¶Ô·¢Ë͹ýÈ¥µÄDNSÇëÇó½øÐмǼ¡£¾­³£±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐÐÃüÁî½á¹ûµÄ»ØÏÔ¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_interact_´øÍâ²éѯ

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö£º

interact.shÊÇinteract.sh¹¤¾ßÅäÌ×µÄDNSLogƽ̨£¬Äܹ»¶Ô·¢Ë͹ýÈ¥µÄDNSÇëÇó½øÐмǼ¡£¾­³£±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐÐÃüÁî½á¹ûµÄ»ØÏÔ¡£

¸üÐÂʱ¼ä£º

20220906


 

ʼþÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Struts2_S2-045_´úÂëÖ´ÐÐ[CVE-2017-5638]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£ÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬¹¥»÷Õß¿ÉÒÔÔÚÎļþÉÏ´«Ê±Í¨¹ý½á¹¹HTTPÇëÇóÍ·ÖеÄContent-TypeÖµ¿ÉÄÜÔì³ÉÔ¶³Ì´úÂëÖ´ÐЩ¶´¡£Â©¶´´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10ʵÑé²âÊÔÑéÖ¤ApacheStruts2S2-045Ô¶³Ì´úÂëÖ´ÐЩ¶´£¬²âÊÔ²»¾ßÓй¥»÷ÐÔ£¬µ«¿ÉÄÜ̻¶ϵͳ´àÈõÐÔÌØÕ÷¡£

¸üÐÂʱ¼ä£º

20220906

 

ʼþÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Struts2_S2-046_´úÂëÖ´ÐÐ[CVE-2017-5638]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£¹¥»÷ÕßÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐЩ¶´£¬½á¹¹¶ñÒâOGNLʹµÃÉÏ´«ÎļþµÄ´óС£¨ÓÉContent-LengthÍ·Ö¸¶¨£©´óÓÚStruts2ÔÊÐíµÄ×î´ó¾Þϸ2GB¡£Â©¶´´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10¹¥»÷Àֳɣ¬¿ÉÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£

¸üÐÂʱ¼ä£º

20220906

 

ÐÞ¸Äʼþ

 

ʼþÃû³Æ£º

HTTP_ÐÅϢй¶_Ŀ¼±éÀú[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʵÑé¶ÔÄ¿µÄIPÖ÷»ú½øÐÐĿ¼´©Ô½Â©¶´¹¥»÷ʵÑéµÄÐÐΪ¡£Ä¿Â¼´©Ô½Â©¶´ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ·ÃÎÊÏÞÖÆ£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬ÈÎÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£´Ë¹æÔòÊÇÒ»ÌõͨÓùæÔò£¬ÆäËû©¶´£¨ÉõÖÁһЩ0day©¶´£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´Ëʼþ±¨¾¯¡£ÓÉÓÚÕý³£ÒµÎñÖÐÒ»°ã²»»á·¢Éú´ËʼþÌØÕ÷µÄÁ÷Á¿£¬ËùÒÔÐèÒªÖØµã¹Ø×¢¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß·ÃÎÊÃô¸ÐÎļþ¡£

¸üÐÂʱ¼ä£º

20220906