2020-10-13

Ðû²¼Ê±¼ä 2020-10-14

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Nexus_Repository_Manager_3Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-10199][CNNVD-202004-034]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPʹÓÃNexus Repository Manager 3ͨ¹ýͨË×Óû§È¨Ï޽ṹ¶ñÒâjsonÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£Nexus Repository Manager 3ÊÇÒ»¸öJavaЧÀÍÆ÷Ó¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

HTTP_Nexus_Repository_Manager_3Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-10204][CNNVD-202004-036]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPʹÓÃNexus Repository Manager 3ͨ¹ýadminȨÏ޽ṹ¶ñÒâjsonÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£Nexus Repository Manager 3ÊÇÒ»¸öJavaЧÀÍÆ÷Ó¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Apache_Solr_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-0193]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃapache-solr_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-0193]¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Horde_Groupware_Webmail_Edition_·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Horde Groupware WebmailÊÇÃÀ¹úHorde¹«Ë¾µÄÒ»Ì×»ùÓÚä¯ÀÀÆ÷µÄÆóÒµ¼¶Í¨Ñ¶Ì×¼þ¡£¡£¡£¡£¡£¡£¡£ Horde Groupware WebmailÖб£´æ´úÂë×¢ÈëÎó²î¡£¡£¡£¡£¡£¡£¡£ÔÊÐí¹¥»÷ÕßÔÚIMP_Prefs_SortÀàµÄ½á¹¹º¯ÊýÖжԲ»ÊÜÐÅÈεÄÊý¾ÝÎó²î¾ÙÐз´ÐòÁл¯¡£¡£¡£¡£¡£¡£¡£µÍÌØÈ¨µÄ¾­ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔʹÓÃÕâÒ»µãÀ´ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Harbor_δÊÚȨ½¨ÉèÖÎÀíÔ±Îó²î

Çå¾²ÀàÐÍ£º

ÍøÂçͨѶ

ÊÂÎñÐÎò£º

Harbor ÊÇÒ»¸öÓÃÓÚ´æ´¢ºÍ·Ö·¢ Docker ¾µÏñµÄÆóÒµ¼¶ Registry ЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Harbor 1.7.0 °æ±¾ÖÁ 1.8.2 °æ±¾ÖÐµÄ core/api/user.go Îļþ±£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ýPOST·½·¨Ìá½»¶ñÒâÇëÇóµ½/api/users½Ó¿Ú£¬£¬£¬£¬£¬¼´¿ÉʹÓøÃÎó²î½¨ÉèÖÎÀíÔ±ÕË»§£¬£¬£¬£¬£¬´Ó¶ø½ÓÊÜHarbor¾µÏñ¿ÍÕ»£¬£¬£¬£¬£¬ÊµÏÖɾ³ý¡¢ÎÛȾ¾µÏñµÈ¹¥»÷²Ù×÷

¸üÐÂʱ¼ä£º

20201013


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_reGeorg-v1.0_ºóÃÅÅþÁ¬

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÅþÁ¬Ä¿µÄÖ÷»úÉϵÄreGeorg-v1.0ľÂíºóÃÅÎļþ£¬£¬£¬£¬£¬ÏòÄÚÍøÖ÷»ú·¢ËÍÌØ¶¨ÅþÁ¬Ö¸Áî¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

HTTP_SpringSecurityOAuth2_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2018-1260]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼʹÓÃSpring¿ò¼ÜSpring Security OAuth2Ä£¿£¿£¿£¿£¿£¿£¿éÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013


ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_MSAServices.Bitter.Rat(ÂûÁ黨)_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ BitterľÂí ÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁË BitterľÂí¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20201013