Intellian Satellian Aptus WebÔ¶³ÌÏÂÁîÖ´ÐÐÎó²îΣº¦Í¨¸æ

Ðû²¼Ê±¼ä 2020-02-10

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2020-7980£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º9.8


Ó°Ïì°æ±¾


Intellian Satellian Aptus <= 1.24


Îó²î¸ÅÊö


Intellian Satellian Aptus Web¿ØÖÆÌ¨±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£ ¡£¡£¡£¡£Intellian Aptus Web 1.24֮ǰµÄ°æ±¾£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õßͨ¹ýJSONÊý¾ÝÖеÄQ×Ö¶ÎÏò/cgi-bin/libagent.cgi Ö´ÐÐí§ÒâOSÏÂÁî¡£¡£ ¡£¡£¡£¡£²¿·ÖÇéÐÎÏÂÐèÒªÓÐÓõÄÈÏÖ¤cookie²Å»ªµÇ¼²¢´¥·¢Îó²î¡£¡£ ¡£¡£¡£¡£


Îó²îÑéÖ¤


PoC£ºhttps://github.com/Xh4H/Satellian-CVE-2020-7980¡£¡£ ¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Ð°汾ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬£¬¹ÙÍøÁ´½Ó£ºhttps://www.intelliantech.com/?lang=en¡£¡£ ¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://nvd.nist.gov/vuln/detail/CVE-2020-7980