ÿÖÜÉý¼¶Í¨¸æ-2023-05-16

Ðû²¼Ê±¼ä 2023-05-16

ÐÂÔöÊÂÎñ

ÊÂÎñÃû³Æ£º

TCP_Îó²îʹÓÃ_·´ÐòÁл¯_Oracle_Weblogic_T3ЭÒé[CVE-2020-2883]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

OracleWebLogicServerÊÇÒ»¸öͳһµÄ¿ÉÀ©Õ¹Æ½Ì¨£¬ÓÃÓÚÔÚÍâµØºÍÔÆ¶Ë¿ª·¢¡¢°²ÅźÍÔËÐÐÆóÒµÓ¦ÓóÌÐò£¬ÀýÈçJava¡£WebLogicServerÌṩÁËJavaEnterpriseEdition(EE)ºÍJakartaEEµÄ¿É¿¿¡¢³ÉÊìºÍ¿ÉÀ©Õ¹µÄʵÏÖ¡£CVE-2020-2555Îó²î¿ÉÒÔͨ¹ý·´ÐòÁл¯´¥·¢ExtractorÖв»Çå¾²µÄextractÒªÁ죬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õßͨ¹ýT3ЭÒéÍøÂç»á¼û²¢ÆÆËðÒ×Êܹ¥»÷µÄWebLogic·þÎñÆ÷£¬ÀÖ³ÉʹÓôËÎó²î¿ÉÄܵ¼ÖÂOracleWebLogic·þÎñÆ÷±»½ÓÊÜ»òÃô¸ÐÐÅϢй¶¡£Ó°Ïì¹æÄ££ºOracleCoherence10.3.6.0.0OracleCoherence12.1.3.0.0OracleCoherence12.2.1.3.0OracleCoherence12.2.1.4.0

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÐÅϢй¶_YONYOUNFIDA

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

ufidaÐÅϢй¶Îó²î¹¥»÷ʵÑé

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

DNS_¿ÉÒÉÐÐΪ_ËíµÀ´úÀí¹¤¾ß_nat123ʵÑéת·¢

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

nat123ÊÇÒ»¸öÄÚÍø¶Ë¿ÚÓ³ÉäÈí¼þ£¬ÔÚÄÚÍøÆô¶¯Ó³Éäºó£¬¿ÉÔÚÍâÍøÇáËÉ»á¼ûÅþÁ¬ÄÚÍøÍøÕ¾µÈÓ¦Óã¬ÊµÏÖÄÚÍø´©Í¸¡£

³£±»ÍøÕ¾¿ª·¢²âÊÔÖ°Ô±»ò¹¥»÷ÕßʹÓá£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_Ç徲Σº¦_¿ÉÒÉÐÐΪ_SNETCracker_·µ»ØÖ÷»úÐÅÏ¢/ÇëÇó¸üÐÂ

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

SNETCracker(³¬µÈÈõ¿ÚÁî)³¬ÊÇÒ»¿îWindowsƽ̨µÄÈõ¿ÚÁîÉ󼯹¤¾ß£¬Ö§³ÖÅúÁ¿¶àÏ̼߳ì²é£¬¿É¿ìËÙ·¢Ã÷ÈõÃÜÂë¡¢Èõ¿ÚÁîÕ˺Å£¬ÃÜÂëÖ§³ÖºÍÓû§ÃûÍŽá¾ÙÐмì²é£¬´ó´óÌá¸ßÀÖ³ÉÂÊ£¬Ö§³Ö×Ô½ç˵·þÎñ¶Ë¿ÚºÍ×ֵ䡣

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ľÂí_Win_Lokibot_LokiPWS_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíLokibot_LokiPWSÃÜÂëÇÔÈ¡Æ÷¡£LokiPWSÊÇÒ»¸öÇÔÃÜľÂí£¬»á½«Êܺ¦ÕßÖ÷»úÉÏ´æ´¢µÄÃÜÂë¡¢ä¯ÀÀÆ÷Éϰ¶Æ¾Ö¤¡¢¼ÓÃÜÇ®±ÒÇ®°üµÈÐÅÏ¢ÉÏ´«µ½Ô¶³Ì·þÎñÆ÷¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

TCP_Éó¼ÆÊÂÎñ_SMTP_먦Æô¿Í»§¶ËÊÚȨ»á¼û±»¾Ü¾ø

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½smtpЭÒé503¹ýʧ·µ»Ø£¬µ±smtpЭÒéʹÓÃʱ£¬Ã»ÓоÙÐÐÉí·ÝÑéÖ¤»òÉí·ÝÑéÖ¤²»×¼È·Ê±»á·ºÆð503¹ýʧ¡£

¸üÐÂʱ¼ä£º

20230516

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_·´ÐòÁл¯Îó²î[CVE-2020-2883][CVE-2020-14645][CVE-2020-14841][CVE-2020-14825][CVE-2020-14825/CVE-2020-2883/CVE-2020-14645/CVE-2020-14841]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´ipÕýÔÚʹÓÃ10.3.6.0.0¡¢12.1.3.0.0¡¢12.2.1.3.0¡¢12.2.1.4.0ºÍ14.1.1.0.0°æ±¾µÄweblogicÖб£´æµÄ·´ÐòÁл¯Îó²î£¬´Ó¶ø»ñȡĿµÄϵͳµÄȨÏÞ¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Sinapsi_eSolar_Light_Photovoltaic_System_Monitor_SQL×¢Èë[CVE-2012-5861]

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSinapsieSolarLightPhotovoltaicSystemMonitorSQL×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£SinapsieSolarLightÊÇÌ«ÑôÄÜÓ¦ÓÃÄÚʹÓÃµÄ¼à¿ØÏµÍ³¡£SinapsieSolar£¬SinapsieSolarDUO¹Ì¼þ2.0.2870_2.2.12֮ǰ°æ±¾Öб£´æ¶à¸öSQL×¢ÈëÎó²î¡£Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²îͨ¹ý(1)primo²Ù×÷Öеġ®inverterselect¡¯²ÎÊý´«Ë͵½dettagliinverter.php¾ç±¾»ò(2)¡®lingua¡¯²ÎÊý´«Ë͵½changelanguagesession.php¾ç±¾£¬Ö´ÐÐí§ÒâSQLÏÂÁî¡£¹¥»÷Õ߿ɻñµÃÃô¸ÐÐÅÏ¢»ò²Ù×÷Êý¾Ý¿â¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÐÅϢй¶_Atlassian-Jira[CVE-2019-8449]

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýHTTP_Atlassian-Jira_ÐÅϢй¶[CVE-2019-8449]Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£AtlassianJira8.4.0֮ǰ°æ±¾/rest/api/latest/groupuserpicker½Ó¿ÚÔÊÐíδÊÚȨÅÌÎÊÔ±¹¤ÐÅÏ¢£¬¹¥»÷Õß¿ÉÒÔͨ¹ý±¬ÆÆÓû§ÃûÃûµ¥µÈÒªÁì»ñÈ¡Óû§ÐÅϢδÊÚȨµÄ¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡ÊÜÓ°Ïì×é¼þÃô¸ÐÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Linux¿ÉÒÉÏÂÁîÖ´Ðй¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÏÂÁî×¢Èë¹¥»÷£¬ÊÇÖ¸ÕâÑùÒ»ÖÖ¹¥»÷ÊֶΣ¬ºÚ¿Íͨ¹ý°ÑϵͳÏÂÁî¼ÓÈëµ½webÇëÇóÒ³ÃæÍ·²¿ÐÅÏ¢ÖУ¬Ò»¸ö¶ñÒâºÚ¿ÍÒÔʹÓÃÕâÖÖ¹¥»÷ÒªÁìÀ´²»·¨»ñÈ¡Êý¾Ý»òÕßÍøÂ硢ϵͳ×ÊÔ´¡£null

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁîÓë¿ØÖÆ_Ô¶¿ØºóÃÅ_FiveSys_ÅþÁ¬C2·þÎñÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½FiveSysľÂíºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£FiveSysľÂíÖ÷Òª¹¦Ð§Êǽ«Ê¹ÓÃÕßÁ÷Á¿·öÒýµ½Ìض¨¶ñÒâ´úÀí·þÎñÆ÷ £»FiveSysÄ¿µÄÊÇÔÚÓû§ÅþÁ¬ÏßÉÏÓÎϷʱ£¬½«Óû§Á÷Á¿µ¼Ïò´úÀí·þÎñÆ÷ʱ£¬½è´Ë×èµ²¡¢ÇÔÈ¡Óû§ÕÊÃܵÈÑéÖ¤ÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20230516

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Agentb_ÅþÁ¬C2·þÎñÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½AgentbľÂíºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Agentb»áÍøÂçÊܺ¦Ö÷»ú»ù±¾ÐÅÏ¢£¬²¢±£´æ½«Êܺ¦Ö÷»ú¿ØÖƳÉΪ´úÀí·þÎñÆ÷µÄ¿ÉÄÜ¡£

¸üÐÂʱ¼ä£º

20230516