ÿÖÜÉý¼¶Í¨¸æ-2023-05-16

Ðû²¼Ê±¼ä 2023-05-16

ÐÂÔöʼþ

ʼþÃû³Æ£º

TCP_©¶´ÀûÓÃ_·´ÐòÁл¯_Oracle_Weblogic_T3ЭÒé[CVE-2020-2883]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©Õ¹Æ½Ì¨£¬ÓÃÓÚÔÚµ±µØºÍÔƶ˿ª·¢¡¢²¿ÊðºÍÔËÐÐÆóÒµÓ¦Ó÷¨Ê½£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿É¿¿¡¢³ÉÊìºÍ¿ÉÀ©Õ¹µÄʵÏÖ¡£CVE-2020-2555©¶´¿ÉÒÔͨ¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»Äþ¾²µÄextractÒªÁ죬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ЭÒéÍøÂç·ÃÎʲ¢ÆÆ»µÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬ÀÖ³ÉÀûÓôË©¶´¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»½Ó¹Ü»òÃô¸ÐÐÅϢй¶¡£Ó°Ï췶Χ£ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_©¶´ÀûÓÃ_ÐÅϢй¶_YONYOUNFIDA

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö£º

ufidaÐÅϢ鶩¶´¹¥»÷ʵÑé

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_ËíµÀÊðÀí¹¤¾ß_nat123ʵÑéת·¢

Äþ¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ʼþÃèÊö£º

nat123ÊÇÒ»¸öÄÚÍø¶Ë¿ÚÓ³ÉäÈí¼þ£¬ÔÚÄÚÍøÆô¶¯Ó³Éäºó£¬¿ÉÔÚÍâÍøÇáËÉ·ÃÎÊÁ¬½ÓÄÚÍøÍøÕ¾µÈÓ¦Óã¬ÊµÏÖÄÚÍø´©Í¸¡£

³£±»ÍøÕ¾¿ª·¢²âÊÔÈËÔ±»ò¹¥»÷ÕßʹÓá£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_Äþ¾²·çÏÕ_¿ÉÒÉÐÐΪ_SNETCracker_·µ»ØÖ÷»úÐÅÏ¢/ÇëÇó¸üÐÂ

Äþ¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ʼþÃèÊö£º

SNETCracker(³¬¼¶Èõ¿ÚÁî)³¬ÊÇÒ»¿îWindowsƽ̨µÄÈõ¿ÚÁîÉó¼Æ¹¤¾ß£¬Ö§³ÖÅúÁ¿¶àÏ̼߳ì²é£¬¿É¿ìËÙ·¢ÏÖÈõÃÜÂë¡¢Èõ¿ÚÁîÕ˺Å£¬ÃÜÂëÖ§³ÖºÍÓû§Ãû½áºÏ½øÐмì²é£¬´ó´óÌá¸ßÀÖ³ÉÂÊ£¬Ö§³Ö×Ô½ç˵·þÎñ¶Ë¿ÚºÍ×ֵ䡣

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_ľÂí_Win_Lokibot_LokiPWS_Á¬½Ó

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíLokibot_LokiPWSÃÜÂëÇÔÈ¡Æ÷¡£LokiPWSÊÇÒ»¸öÇÔÃÜľÂí£¬»á½«Êܺ¦ÕßÖ÷»úÉÏ´æ´¢µÄÃÜÂë¡¢ä¯ÀÀÆ÷µÇ½ƾ֤¡¢¼ÓÃÜ»õ±ÒÇ®°üµÈÐÅÏ¢ÉÏ´«µ½Ô¶³Ì·þÎñÆ÷¡£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

TCP_Éó¼Æʼþ_SMTP_먦Æô¿Í»§¶ËÊÚȨ·ÃÎʱ»¾Ü¾ø

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½smtpЭÒé503´íÎ󷵻أ¬µ±smtpЭÒéʹÓÃʱ£¬Ã»ÓнøÐÐÉí·ÝÑéÖ¤»òÉí·ÝÑéÖ¤²»Õýȷʱ»á·ºÆð503´íÎó¡£

¸üÐÂʱ¼ä£º

20230516

 

ÐÞ¸Äʼþ

 

ʼþÃû³Æ£º

TCP_Oracle_WebLogic_·´ÐòÁл¯Â©¶´[CVE-2020-2883][CVE-2020-14645][CVE-2020-14841][CVE-2020-14825][CVE-2020-14825/CVE-2020-2883/CVE-2020-14645/CVE-2020-14841]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ô´ipÕýÔÚÀûÓÃ10.3.6.0.0¡¢12.1.3.0.0¡¢12.2.1.3.0¡¢12.2.1.4.0ºÍ14.1.1.0.0°æ±¾µÄweblogicÖдæÔڵķ´ÐòÁл¯Â©¶´£¬´Ó¶ø»ñÈ¡Ä¿±êϵͳµÄȨÏÞ¡£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Sinapsi_eSolar_Light_Photovoltaic_System_Monitor_SQL×¢Èë[CVE-2012-5861]

Äþ¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSinapsieSolarLightPhotovoltaicSystemMonitorSQL×¢È멶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£SinapsieSolarLightÊÇÌ«ÑôÄÜÓ¦ÓÃÄÚʹÓõļà¿Øϵͳ¡£SinapsieSolar£¬SinapsieSolarDUO¹Ì¼þ2.0.2870_2.2.12֮ǰ°æ±¾ÖдæÔÚ¶à¸öSQL×¢È멶´¡£Ô¶³Ì¹¥»÷ÕßÀûÓø鶴ͨ¹ý(1)primo²Ù×÷Öеġ®inverterselect¡¯²ÎÊý´«Ë͵½dettagliinverter.php½Å±¾»ò(2)¡®lingua¡¯²ÎÊý´«Ë͵½changelanguagesession.php½Å±¾£¬Ö´ÐÐÈÎÒâSQLÃüÁî¡£¹¥»÷Õß¿É»ñµÃÃô¸ÐÐÅÏ¢»ò²Ù×÷Êý¾Ý¿â¡£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_ÐÅϢй¶_Atlassian-Jira[CVE-2019-8449]

Äþ¾²ÀàÐÍ£º

CGI¹¥»÷

ʼþÃèÊö£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýHTTP_Atlassian-Jira_ÐÅϢй¶[CVE-2019-8449]©¶´¹¥»÷Ä¿µÄIPÖ÷»ú¡£AtlassianJira8.4.0֮ǰ°æ±¾/rest/api/latest/groupuserpicker½Ó¿ÚÔÊÐíδÊÚȨ²éѯԱ¹¤ÐÅÏ¢£¬¹¥»÷Õß¿ÉÒÔͨ¹ý±¬ÆÆÓû§ÃûÃûµ¥µÈÒªÁì»ñÈ¡Óû§ÐÅϢδÊÚȨµÄ¹¥»÷Õß¿ÉÀûÓ鶴»ñÈ¡ÊÜÓ°Ïì×é¼þÃô¸ÐÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Linux¿ÉÒÉÃüÁîÖ´Ðй¥»÷

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

ÃüÁî×¢Èë¹¥»÷£¬ÊÇÖ¸ÕâÑùÒ»ÖÖ¹¥»÷ÊֶΣ¬ºÚ¿Íͨ¹ý°ÑϵͳÃüÁî¼ÓÈëµ½webÇëÇóÒ³ÃæÍ·²¿ÐÅÏ¢ÖУ¬Ò»¸ö¶ñÒâºÚ¿ÍÒÔÀûÓÃÕâÖÖ¹¥»÷ÒªÁìÀ´·Ç·¨»ñÈ¡Êý¾Ý»òÕßÍøÂ硢ϵͳ×ÊÔ´¡£null

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_ÃüÁîÓë¿ØÖÆ_Ô¶¿ØºóÃÅ_FiveSys_Á¬½ÓC2·þÎñÆ÷

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½FiveSysľÂíºóÃÅÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£FiveSysľÂíÖ÷Òª¹¦Ð§Êǽ«Ê¹ÓÃÕßÁ÷Á¿µ¼Òýµ½Ìض¨¶ñÒâÊðÀí·þÎñÆ÷ £»FiveSysÄ¿µÄÊÇÔÚÓû§Á¬½ÓÏßÉÏÓÎϷʱ£¬½«Óû§Á÷Á¿µ¼ÏòÊðÀí·þÎñÆ÷ʱ£¬½è´ËÀ¹½Ø¡¢ÇÔÈ¡Óû§ÕÊÃܵÈÑéÖ¤ÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ʼþÃû³Æ£º

HTTP_ÃüÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Agentb_Á¬½ÓC2·þÎñÆ÷

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½AgentbľÂíºóÃÅÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Agentb»áÊÕ¼¯Êܺ¦Ö÷»ú»ù±¾ÐÅÏ¢£¬²¢´æÔÚ½«Êܺ¦Ö÷»ú¿ØÖƳÉΪÊðÀí·þÎñÆ÷µÄ¿ÉÄÜ¡£

¸üÐÂʱ¼ä£º

20230516