ÿÖÜÉý¼¶Í¨¸æ-2022-01-18

Ðû²¼Ê±¼ä 2022-01-18

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_¿ÉÒÉÐÐΪ_Apache_Log4j_ǶÌ×ʹÓÃÄÚÖÃlookupÃûÌÃ×Ö·û´®

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ApacheLog4jÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Í¼¿â£¬£¬£¬ÆäÖ§³ÖÆô¶¯Ô¶³ÌÈÕ־ЧÀÍÆ÷¡£¡£¡£¡£¡£¡£´ËÊÂÎñ´ú±í·¢Ã÷ÁËÔ´IPÖ÷»ú·¢ËÍÁËÖª×ãÄÚÖÃlookupÃûÌõÄ×Ö·û´®£¬£¬£¬µ±Ä¿µÄIPÖ÷»úºó¶ËÎüÊÕµ½´ËÃûÌõÄ×Ö·û´®Ê±£¬£¬£¬»á×Ô¶¯Å²ÓÃlookup¹¦Ð§¡£¡£¡£¡£¡£¡£´ËÊÂÎñ¼ì²âµÄÊÇ¡°Ç¶Ìס±Ê¹ÓÃlookup¼ÇºÅµÄÐÐΪ£¬£¬£¬´ËÐÐΪ¾ßÓÐÒ»¶¨Î£º¦£¬£¬£¬¿ÉÄܻᱻ¹¥»÷ÕßÀÄÓ㬣¬£¬ÈçÈÆ¹ýWAF¼ì²â£¬£¬£¬²¢¾ÙÐзÇÔ¤ÆÚµÄjndiŲÓᣡ£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_DedeCMSV6.0.3_article_string_mix.php_Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

DedeCMSV6ϵͳ»ùÓÚPHP7.X¿ª·¢£¬£¬£¬¾ßÓкÜÇ¿µÄ¿ÉÀ©Õ¹ÐÔ£¬£¬£¬²¢ÇÒÍêÈ«¿ª·ÅÔ´´úÂë¡£¡£¡£¡£¡£¡£ØÊºǫ́article_string_mix.phpÎļþ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬¹¥»÷Õß¿ÉʹÓôËÎó²îÄõ½Ä¿µÄÖ÷»úȨÏÞ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_À¶ÁèOA_admin.do_JNDIÔ¶³ÌÏÂÁîÖ´ÐÐ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÉîÛÚÊÐÀ¶ÁèÈí¼þ¹É·ÝÓÐÏÞ¹«Ë¾Êý×ÖOA(EKP)±£´æí§ÒâÎļþ¶ÁÈ¡Îó²î¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬¶ÁÈ¡ÉèÖÃÎļþ»ñµÃÃÜÔ¿ºó»á¼ûadmin.do¼´¿ÉʹÓÃJNDIÔ¶³ÌÏÂÁîÖ´ÐлñȡȨÏÞ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_Pupy_ÅþÁ¬C2ЧÀÍÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Óɺڿ͹¤¾ßPupyÌìÉúµÄhttpÔ¶¿ØºóÃÅÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷,Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPupyÔ¶¿ØºóÃÅ¡£¡£¡£¡£¡£¡£Ö´Ðк󣬣¬£¬¹¥»÷Õß¿ÉÍêÈ«¿ØÖƱ»Ö²Èë»úе£¬£¬£¬²¢¾ÙÐкáÏòÒÆ¶¯¡£¡£¡£¡£¡£¡£PupyÊÇÒ»¸öpython±àдµÄ¿çƽ̨¡¢¶à¹¦Ð§Ô¶¿ØºóÃźͺóÉøÍ¸¹¤¾ß¡£¡£¡£¡£¡£¡£Ëü¾ßÓÐall-in-memoryÖ´Ðй¦Ð§£¬£¬£¬Õ¼ÓÿռäºÜÊÇС¡£¡£¡£¡£¡£¡£Pupy¿ÉÒÔʹÓöàÖÖ·½·¨¾ÙÐÐͨѶ£¬£¬£¬Ê¹Ó÷´Éä×¢ÈëǨáãµ½Àú³ÌÖУ¬£¬£¬²¢´ÓÄÚ´æ¼ÓÔØÔ¶³Ìpython´úÂë¡¢python°üºÍpythonC-extensions¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118


 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Zhone-Technologies-zNID-GPON-2426A_ÏÂÁîÖ´ÐÐ[CVE-2014-9118][CNNVD-201510-721]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ZhoneTechnologieszNIDGPON2426AÊÇÃÀ¹úZhoneTechnologies¹«Ë¾µÄÒ»¿î·ÓÉÆ÷¡£¡£¡£¡£¡£¡£webadministrativeportalÊÇÆäÖеÄÒ»¸öWebÖÎÀíÔ±¿ØÖÆÌ¨³ÌÐò¡£¡£¡£¡£¡£¡£ZhoneTechnologieszNIDGPON2426AS3.0.501֮ǰ°æ±¾µÄWebÖÎÀíÔ±¿ØÖÆÌ¨Öб£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýÏòzhnping.cmdÎļþ·¢ËÍ´øÓÐshellÔª×Ö·ûµÄ¡®ipAddr¡¯²ÎÊýʹÓøÃÎó²îÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220118