ÿÖÜÉý¼¶Í¨¸æ-2023-02-07
Ðû²¼Ê±¼ä 2023-02-07ÐÂÔöʼþ
ʼþÃû³Æ£º | HTTP_ľÂíºóÃÅ_Merlin_Á¬½ÓC2·þÎñÆ÷ |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½Merlin_agentÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMerlinagent¡£MerlinagentÊÇÒ»¸ö¹¦Ð§·Ç³£Ç¿´óµÄºóÃÅ£¬ÔËÐк󣬿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£ÔÊÐí¹¥»÷ÕßÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£ÔÊÐí¹¥»÷Õß¿ØÖƱ»Ö²Èë»úÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_©¶´ÀûÓÃ_´úÂëÖ´ÐÐ_F5_BIGIP_WSDL¸ñʽ×Ö·û´®Â©¶´[CVE-2023-22374] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | F5BIG-IPµÄiControlPortal.cgi½Ó¿Ú´æÔÚ©¶´£¬¹¥»÷ÕßÔÚ¾¹ýÉí·ÝУÑéµÄÇé¿öÏ¿Éͨ¹ý½á¹¹ÌØÊâpayload£¬Ê¹Ä¿±êÖ÷»ú·þÎñ±ÀÀ£»ò»ñÈ¡Ö÷»úȨÏÞ¡£´ËÎÊÌâ½öÓ°ÏìBIG-IP(²»Ó°ÏìBIG-IQ)Ó°Ïì°æ±¾:F5BIG-IP17.0.0F5BIG-IP16.1.2.2-16.1.3F5BIG-IP15.1.5.1-15.1.8F5BIG-IP14.1.4.6-14.1.5F5BIG-IP13.1.5 |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | TCP_½©Ê¬ÍøÂç_HinataBot_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½HinataBotÊÔͼÁ¬½ÓC&C·þÎñÆ÷£¬Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçHinataBot¡£HinataBotÊÇGoÓïÑÔ±àдµÄDDoS½©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±êÌᳫDDoS¹¥»÷¡£¹²Ö§³Ölinux¡¢windows¡¢freebsd¡¢netbsd¡¢openbsd¡¢solaris¡¢darwin¡¢dragonfly¡¢plan9¡¢androidµÈ10¸ö²Ù×÷ϵͳ¡£Ö§³Ö386¡¢amd64¡¢arm¡¢mips¡¢ppcµÈ¶à¸öÖ¸Á¡£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Apache_APISIX_ĬÈÏÃÜÔ¿[CVE-2020-13945][CNNVD-202012-424] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´ipÖ÷»úÕýÔÚÀûÓÃApacheAPISIXµÄĬÈÏÃÜԿ©¶´½øÐй¥»÷£¬ÔÚÓû§Î´Ö¸¶¨¹ÜÀíÔ±Token»òʹÓÃÁËĬÈÏÅäÖÃÎļþµÄÇé¿öÏ£¬ApacheAPISIX½«Ê¹ÓÃĬÈϵĹÜÀíÔ±Tokenedd1c9f034335f136f87ad84b625c8f1£¬¹¥»÷ÕßÀûÓÃÕâ¸öToken¿ÉÒÔ·ÃÎʵ½¹ÜÀíÔ±½Ó¿Ú£¬½ø¶øͨ¹ýscript²ÎÊýÀ´²åÈëÈÎÒâLUA½Å±¾²¢Ö´ÐС£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | TCP_ľÂíºóÃÅ_Gh0st.Get_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½Gh0st.GetÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÔ¶¿ØºóÃÅGh0st.Get¡£Gh0st.GetÊÇÀûÓÃÒ»¸öƾ¾ÝGh0stÔ¶¿ØµÄÔ´ÂëÐ޸ĶøÀ´µÄÔ¶¿ØºóÃÅ£¬ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ö²Èë»úÆ÷¡£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_½©Ê¬ÍøÂç_LiteHTTP_Á¬½ÓC2·þÎñÆ÷ |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½LiteHTTPÊÔͼÁ¬½ÓC&C·þÎñÆ÷¡£LiteHTTPÊÇÒ»¸öʹÓÃC#±àдµÄ¿ªÔ´½©Ê¬ÍøÂç¶ñÒâÈí¼þ£¬ÏîÄ¿µØַΪ£ºhttps://github.com/zettabithf/LiteHTTP£¬ÏîÄ¿ÓÐ3¸öĿ¼£¬BotÊDz¡¶¾·¨Ê½µÄ´úÂ룬PanelÊÇ¿ØÖƶ˵ĴúÂ룬ʹÓÃPHP±àд£¬BuilderÊÇÒ»¸öÉú³ÉÆ÷£¬ÓÃÓÚ¿ìËÙÉú³É²¡¶¾·¨Ê½¡£LiteHTTP¿ÉÒÔÊÕ¼¯Ö÷»úÐÅÏ¢£¬Ê¹ÓÃÔ¤ÏÈÔ¼¶¨µÄÃÜÔ¿½øÐмÓÃÜ£¬È»ºó½«¼ÓÃܺóµÄÐÅÏ¢ÒÔHTTPµÄ·½Ê½ÉÏ´«ÖÁ¿ØÖƶ˷þÎñÆ÷£¬½ÓÊÜ¿ØÖƶ˵ĿØÖÆÂë²¢Ö´ÐÐÏàÓ¦µÄ²Ù×÷£¬ÉÏ´«Ö´ÐеĽá¹û¡£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_Îļþ²Ù×÷¹¥»÷_Zimbra_ÎļþÉÏ´«[CVE-2022-27925][CVE-2022-37042][CNNVD-202204-3909] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ZimbraCollaborationSuite(ZCS)8.8.15ºÍ9.0¾ßÓÐmboximport¹¦Ð§£¬¿É½ÓÊÕZIP´æµµ²¢´ÓÖÐÌáÈ¡Îļþ¡£Í¨¹ýÈƹýÉí·ÝÑéÖ¤£¨¼´Ã»ÓÐÉí·ÝÑéÖ¤ÁîÅÆ£©£¬¹¥»÷Õß¿ÉÒÔ½«ÈÎÒâÎļþÉÏ´«µ½ÏµÍ³£¬´Ó¶øµ¼ÖÂĿ¼±éÀúºÍÔ¶³Ì´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20230207 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Weblogic_ForeignOpaqueReference×é¼þ_JNDI×¢Èë_´úÂëÖ´ÐÐ[CVE-2023-21839] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©Õ¹Æ½Ì¨£¬ÓÃÓÚÔÚµ±µØºÍÔƶ˿ª·¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÓ¦Ó÷¨Ê½£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿É¿¿¡¢³ÉÊìºÍ¿ÉÀ©Õ¹µÄʵÏÖ¡£ÓÉÓÚForeignOpaqueReferenceÀà´æÔÚÄþ¾²ÎÊÌ⣬CVE-2023-21839©¶´ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3/IIOPÐÒéÍøÂç·ÃÎʲ¢ÆÆ»µÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬ÀÖ³ÉÀûÓôË©¶´¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»½Ó¹Ü»òÃô¸ÐÐÅϢй¶¡£Ó°Ï췶Χ£ºOracleWebLogicServer12.2.1.3.0OracleWebLogicServer12.2.1.4.0OracleWebLogicServer14.1.1.0.0 |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_©¶´ÀûÓÃ_ÎļþÉÏ´«_ZOHO_ManageEngine_Desktop_Central_statusUpdate[CVE-2014-5005] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃZOHOManageEngineDesktopCentralÖдæÔڵĩ¶´½øÐй¥»÷µÄÐÐΪ¡£ZOHOManageEngineDesktopCentral£¨DC£©ÊÇÃÀ¹ú׿ºÀ£¨ZOHO£©¹«Ë¾µÄÒ»Ì××ÀÃæ¹ÜÀí½â¾ö·½°¸¡£¸Ã·½°¸°üÂÞÈí¼þ·Ö·¢¡¢²¹¶¡¹ÜÀí¡¢ÏµÍ³ÅäÖá¢Ô¶³Ì¿ØÖƵȹ¦Ð§Ä£¿é£¬¿É¶Ô×ÀÃæ»úÒÔ¼°·þÎñÆ÷¹ÜÀíµÄÕû¸öÉúÃüÖÜÆÚÌṩ֧³Ö¡£ZOHOManageEngineDC9build90055֮ǰ°æ±¾ÖдæÔÚÒ»¸öĿ¼±éÀúÔì³ÉµÄÈÎÒâÎļþÉÏ´«Â©¶´£¬¸Ã©¶´Ô´ÓÚ·¨Ê½Ö´ÐÐLFU²Ù×÷ʱ£¬statusUpdateûÓгäʵ¹ýÂË¡®fileName¡¯²ÎÊý£¬Ô¶³Ì¹¥»÷Õ߿ɽèÖúĿ¼±éÀú×Ö·û¡®..¡¯£¬ÉÏ´«ÈÎÒâÎļþ¡£ |
¸üÐÂʱ¼ä£º | 20230207 |
ʼþÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Splunk_´úÂëÖ´ÐÐ[CVE-2022-43571] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | SplunkEnterpriseÊÇ»úÆ÷Êý¾ÝµÄÒýÇ档ʹÓÃSplunk¿ÉÊÕ¼¯¡¢Ë÷ÒýºÍÀûÓÃËùÓÐÓ¦Ó÷¨Ê½¡¢·þÎñÆ÷ºÍÉ豸Éú³ÉµÄ¿ìËÙÒƶ¯ÐͼÆËã»úÊý¾Ý¡£¹ØÁª²¢·ÖÎö¿çÔ½¶à¸öϵͳµÄÅÓ´óʼþ¡£»ñÈ¡ÐÂÌõÀíµÄÔËÓª¿É¼ûÐÔÒÔ¼°ITºÍÒµÎñÖÇÄÜ¡£ÓÉÓÚSplunkEnterpriseÖÐSimpleXMLÒDZí°å´æÔÚ´úÂë×¢È룬¾¹ýÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õ߿ɽṹÌØÖƵÄÊý¾Ý°ü£¬Í¨¹ýPDFµ¼³ö²Ù×÷´¥·¢ÈÎÒâ´úÂëÖ´ÐС£ |
¸üÐÂʱ¼ä£º | 20230207 |