WordPress CMS δÐÞ¸´Îó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2018-06-27Îó²î±àºÅºÍ¼¶±ð
CVE-2018-12895 ¸ßΣ CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì¹æÄ£
¸ÃÎó²îÓ°ÏìËùÓÐWordPress CMS°æ±¾£¬£¬£¬£¬£¬£¬£¬°üÀ¨×îа汾v4.9.6¡£¡£¡£¡£¡£¡£¡£
Îó²î¸ÅÊö
ʹÓôËÎó²îʹ¹¥»÷ÕßÄܹ»É¾³ýWordPress×°ÖõÄÈκÎÎļþ£¨+ PHPЧÀÍÆ÷ÉϵÄÈÎºÎÆäËûÎļþ£¬£¬£¬£¬£¬£¬£¬PHPÀú³ÌÓû§¾ßÓÐÊʵ±µÄɾ³ýȨÏÞ£©¡£¡£¡£¡£¡£¡£¡£ ³ýÁËɾ³ýÕû¸öWordPress×°ÖõĿÉÄÜÐÔ£¨ÈôÊÇûÓÐÄ¿½ñ±¸·Ý¿ÉÓûᵼÖÂÔÖÄÑÐÔЧ¹û£©£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓÃí§ÒâÎļþɾ³ý¹¦Ð§ÈƹýһЩÇå¾²²½·¥²¢ÔÚWebЧÀÍÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£ ¸üÈ·ÇеØËµ£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔɾ³ýÒÔÏÂÎļþ£º
.htaccess£º ͨ³££¬£¬£¬£¬£¬£¬£¬É¾³ý´ËÎļþ²»»áÓÐÈκÎÇ徲Ч¹û¡£¡£¡£¡£¡£¡£¡£ ¿ÉÊÇ£¬£¬£¬£¬£¬£¬£¬ÔÚijЩÇéÐÎÏ£¬£¬£¬£¬£¬£¬£¬ .htaccess Îļþ°üÀ¨ÓëÇå¾²Ïà¹ØµÄÔ¼Êø£¨ÀýÈ磬£¬£¬£¬£¬£¬£¬¶ÔijЩÎļþ¼ÐµÄ»á¼ûÏÞÖÆ£©¡£¡£¡£¡£¡£¡£¡£ ɾ³ý´ËÎļþ½«»á½ûÓÃÕâЩÇå¾²ÏÞÖÆ¡£¡£¡£¡£¡£¡£¡£
index.phpÎļþ£º ͨ³£ÇéÐÎÏ£¬£¬£¬£¬£¬£¬£¬½«¿ÕµÄ index.php Îļþ°²Åŵ½Ä¿Â¼ÖУ¬£¬£¬£¬£¬£¬£¬ÒÔ±ÜÃâWebЧÀÍÆ÷ÎÞ·¨Ö´ÐеÄÇéÐÎϵÄĿ¼ÁÐ±í¡£¡£¡£¡£¡£¡£¡£ ɾ³ýÕâЩÎļþ½«Îª¹¥»÷ÕßÌṩһ·ÝÁÐ±í£¬£¬£¬£¬£¬£¬£¬ÁгöÊܴ˲½·¥±£»£»£»¤µÄĿ¼ÖеÄËùÓÐÎļþ¡£¡£¡£¡£¡£¡£¡£
wp-config.php£º ɾ³ýÕâ¸öWordPress×°ÖÃÎļþ»áÔÚÏ´λá¼û¸ÃÍøÕ¾Ê±´¥·¢WordPress×°ÖÃÀú³Ì¡£¡£¡£¡£¡£¡£¡£ ÕâÊÇÓÉÓÚ wp-config.php °üÀ¨Êý¾Ý¿âƾ֤£¬£¬£¬£¬£¬£¬£¬ÈôÊÇûÓÐËü£¬£¬£¬£¬£¬£¬£¬WordPressµÄÐÐΪ¾ÍËÆºõËüÉÐδװÖᣡ£¡£¡£¡£¡£¡£ ¹¥»÷Õß¿ÉÒÔɾ³ý¸ÃÎļþ£¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃÖÎÀíÔ±ÕÊ»§Ñ¡ÔñµÄƾ֤¾ÙÐÐ×°ÖÃÀú³Ì£¬£¬£¬£¬£¬£¬£¬×îºóÔÚЧÀÍÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£
Îó²îÑéÖ¤
Îó²îÑéÖ¤ÊÓÆµ
http://player.youku.com/embed/XMzY4OTIzNDc4NA==
ÐÞ¸´½¨Òé
Îó²î·¢Ã÷Õߣ¬£¬£¬£¬£¬£¬£¬Ðû²¼ÁËÒ»¸öÔÝʱÐÞ²¹ÒªÁ죺
²Î¿¼https://blog.ripstech.com/2018/wordpress-file-delete-to-code-execution/
Temporary Hotfix

ʱ¼äÏß
2017Äê11ÔÂ20ÈÕÔÚHackeroneÉÏÏòWordPressÇå¾²ÍŶӱ¨¸æÎó²î¡£¡£¡£¡£¡£¡£¡£
2017Äê11ÔÂ22ÈÕÕâ¸öÎó²î±»Çå¾²ÍŶӷÖÀàºÍÑéÖ¤¡£¡£¡£¡£¡£¡£¡£
2017Äê12ÔÂ12ÈÕѯÎÊÏ£ÍûÇéÐΡ£¡£¡£¡£¡£¡£¡£
2017Äê12ÔÂ18ÈÕWordpressÕýÔÚ¿ª·¢Ò»¸ö²¹¶¡³ÌÐò¡£¡£¡£¡£¡£¡£¡£ ÒªÇóÐû²¼ÈÕÆÚ¡£¡£¡£¡£¡£¡£¡£ ûÓз´Ó¦¡£¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ09ÈÕÒªÇóÐû²¼ÈÕÆÚ¡£¡£¡£¡£¡£¡£¡£Ã»Óз´Ó¦¡£¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ20ÈÕÓÉÓÚÎÊÌâµÄÑÏÖØÐÔºÍȱ·¦Ïàͬ£¬£¬£¬£¬£¬£¬£¬±»ÒªÇó¶ÔHackerone¾ÙÐе÷½â¡£¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ24ÈÕWordPressÇå¾²ÍŶÓÔ¤¼ÆÐèÒª6¸öÔµÄʱ¼ä²Å»ªÐÞ¸´¡£¡£¡£¡£¡£¡£¡£
2018Äê05ÔÂ24ÈÕѯÎÊÓйØÎÊÌâµÄÏ£ÍûºÍ/»òÍýÏ룬£¬£¬£¬£¬£¬£¬²¢ÌáÐÑÎÒÃǾ¡¿ìÐû²¼¡£¡£¡£¡£¡£¡£¡£Ã»Óз´Ó¦¡£¡£¡£¡£¡£¡£¡£
2018Äê05ÔÂ24ÈÕ½«ÍÆÌØDM·¢Ë͸øÇå¾²ÍŶӣ¬£¬£¬£¬£¬£¬£¬ÒÔÈ·±£ËûÃDz»»áºöÂÔHackeroneÉϵÄÐÂÎÅ¡£¡£¡£¡£¡£¡£¡£
2018Äê06ÔÂ26ÈÕ±¨¸æ¿¢Êºó7¸öÔÂÒÔÉÏÈÔδ½â¾öÎÊÌâ¡£¡£¡£¡£¡£¡£¡£
²Î¿¼Á´½Ó
https://blog.ripstech.com/2018/wordpress-file-delete-to-code-execution/
https://nvd.nist.gov/vuln/detail/CVE-2018-12895