ÿÖÜÉý¼¶Í¨¸æ-2022-05-17

Ðû²¼Ê±¼ä 2022-05-17

ÐÂÔöÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_F5-BIG-IP-iControl-REST_Éí·ÝÈÏÖ¤ÈÆ¹ýÎó²î[CVE-2022-1388][CNNVD-202205-2141]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

BIG-IPÊÇF5¹«Ë¾µÄÒ»¿îÓ¦Óý»¸¶Ð§ÀÍÊÇÃæÏòÒÔÓ¦ÓÃΪÖÐÐĵÄÌìÏÂÏȽøÊÖÒÕ¡£¡£¡£¡£¡£¡£½èÖúBIG-IPÓ¦ÓóÌÐò½»¸¶¿ØÖÆÆ÷¼á³ÖÓ¦ÓóÌÐòÕý³£ÔËÐС£¡£¡£¡£¡£¡£BIG-IPÍâµØÁ÷Á¿ÖÎÀíÆ÷(LTM)ºÍBIG-IPDNSÄܹ»´¦Öóͷ£Ó¦ÓóÌÐòÁ÷Á¿²¢±£»£»£»£»£»¤»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔͨ¹ýÖÎÀí¶Ë¿Ú»ò×ÔÉíIPµØµã¶ÔBIG-IPϵͳ¾ÙÐÐÍøÂç»á¼û £¬£¬£¬£¬£¬Ö´ÐÐí§ÒâϵͳÏÂÁî¡¢½¨Éè»òɾ³ýÎļþ»ò½ûÓÃЧÀÍ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

TCP_Jackson_Databind_¿ÉÒÉ·´ÐòÁл¯Àà_logback[CVE-2019-14439¡¢CVE-2020-36189¡¢CVE-2020-36187¡¢CVE-2020-36188¡¢CVE-2019-14361]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

JacksonÊÇÒ»¸öÄܹ»½«java¹¤¾ßÐòÁл¯ÎªJSON×Ö·û´® £¬£¬£¬£¬£¬Ò²Äܹ»½«JSON×Ö·û´®·´ÐòÁл¯Îªjava¹¤¾ßµÄ¿ò¼Ü¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃjacksonµÄ¿ÉÒÉ·´ÐòÁл¯Ààlogback¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_TVT_NVMS-9000_Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´ipÕýÔÚʹÓÃNVMS-9000µÄÎó²î £¬£¬£¬£¬£¬Ê¹ÓñàÂëµÄÖÎÀíԱƾ֤ÔÚÊܺ¦ÕߵĻúеÉÏÔËÐÐËûÃǵĴúÂë¡£¡£¡£¡£¡£¡£NVMS(NetworkVideoManageSystem)ÖÐÐÍÍøÂçÊÓÆµ¼à¿Ø±¨¾¯ÖÎÀíϵͳÊÇÔÚÖÐÐÍIPÍøÂç¼à¿ØÇéÐÎÏÂ,ÃæÏòPC-DVR,ǶÈëʽDVR¡¢DVSÊÓÆµÐ§ÀÍÆ÷¡¢IPÉãÏñ»ú¡¢½âÂ뿨¡¢¾ØÕ󿨵ÈÊý×ÖͼÏñ×°±¸¼¯ÖÐ¼à¿ØÖÎÀíÐèÇóÍÆ³öµÄÍøÂç¼à¿ØÂ¼ÏñÖÎÀíרÓÃÈí¼þ¡£¡£¡£¡£¡£¡£»£»£»£»£»ùÓÚWINDOWSƽ̨ £¬£¬£¬£¬£¬ÏµÍ³½ÓÄÉÁËÏȽøµÄ΢½¹µã¼Ó²å¼þ¿ª·¢ÊÖÒÕ £¬£¬£¬£¬£¬Èí¼þ¹¹¼ÜÔ½·¢ÎȹÌÎÞа £¬£¬£¬£¬£¬ÔöÌíÁË×éÖ¯ÖÎÀíºÍ»ùÓÚ×éÖ¯µÄ×°±¸ÖÎÀíÓëȨÏÞÖÎÀí £¬£¬£¬£¬£¬ÖÎÀíµÄ×°±¸´Ó¼òµ¥Ç¶ÈëʽÀ©Õ¹µ½ËùÓÐÖ÷Á÷Êý×ÖͼÏñ×°±¸ £¬£¬£¬£¬£¬Í¬Ê±ÔöÌíÁ˼¯Öд洢ЧÀÍ¡¢Á÷ýÌåת·¢Ð§ÀÍ¡¢±¨¾¯×ª·¢Ð§ÀͺÍWEB¿Í»§¶ËЧÀÍÈí¼þ £¬£¬£¬£¬£¬Äܹ»¸üºÃµÄÖª×ãͨÓÃÍøÂç¼à¿Ø¿Í»§µÄÍêÕûÐèÇó £¬£¬£¬£¬£¬ÆÕ±éÓ¦ÓÃÓÚÕþ¸®ºÍÆóÊÂÒµµ¥Î»µÄÖÐÐÍÍøÂç¼à¿ØÓ뱨¾¯°²·ÀÁìÓòÖС£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

HTTP_Èñ½ÝSmartwebÖÎÀíϵͳ_ÐÅϢй¶

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

Èñ½ÝÍøÂç¹É·ÝÓÐÏÞ¹«Ë¾ÎÞÏßsmartwebÖÎÀíϵͳ±£´æÂß¼­È±ÏÝÎó²î¡£¡£¡£¡£¡£¡£¹¥»÷Õ߿ɴÓÎó²î»ñÈ¡µ½ÖÎÀíÔ±Õ˺ÅÃÜÂë £¬£¬£¬£¬£¬´Ó¶øÒÔÖÎÀíԱȨÏ޵Ǽ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Ektron_CMS_XSLTÆÊÎö_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2012-5357][CNNVD-201212-089]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´ipÕýÔÚʹÓÃEktron_CMSµÄSaxonXSLTÆÊÎöÆ÷µÄÎó²î½á¹¹¶ñÒâXSLTÎļþ´Ó¶øÖ´ÐÐÔ¶³Ì´úÂë¡£¡£¡£¡£¡£¡£EktronCMSÊÇÆóÒµ¼¶WebÄÚÈÝÖÎÀíϵͳ¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_ÅþÁ¬¿ó³ØÀÖ³É(XMR)

Çå¾²ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinMinerľÂí¡£¡£¡£¡£¡£¡£CoinMinerÊÇÒ»¿îÍÚ¿ó¶ñÒâ³ÌÐò £¬£¬£¬£¬£¬ÍÚ¿ó³ÌÐò»áÕ¼ÓÃCPU×ÊÔ´ £¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£¡£¡£¡£¡£¡£Õ¼ÓÃÓû§×ÊÔ´¾ÙÐÐÍڿ󡣡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_ʵÑéÅþÁ¬¿ó³Ø(XMR)

Çå¾²ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£¡£¡£¡£¡£¡£CoinMinerÊÇÒ»¿îÍÚ¿ó¶ñÒâ³ÌÐò £¬£¬£¬£¬£¬ÍÚ¿ó³ÌÐò»áÕ¼ÓÃCPU×ÊÔ´ £¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£¡£¡£¡£¡£¡£Õ¼ÓÃÓû§×ÊÔ´¾ÙÐÐÍڿ󡣡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_Linux.DDoS.Gafgyt_ÅþÁ¬1

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËGafgyt¡£¡£¡£¡£¡£¡£GafgytÊÇÒ»¸öLinux½©Ê¬ÍøÂç £¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄ»úеÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£¶ÔÖ¸¶¨Ä¿µÄÖ÷»úÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

TCP_ľÂí_CPUMiner_»ñÈ¡ÍÚ¿óʹÃü(BTC/LTC)

Çå¾²ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÐÎò£º

¼ì²âµ½ÍÚ¿óľÂíCPUMiner¿ó»ú»ñÈ¡ÍÚ¿óʹÃüµÄÐÐΪ¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£¡£¡£¡£¡£¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒâ³ÌÐò £¬£¬£¬£¬£¬ÍÚ¿ó³ÌÐò»áÕ¼ÓÃCPU×ÊÔ´ £¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517

 

ÊÂÎñÃû³Æ£º

TCP_ľÂí_CoinMiner_»ñÈ¡ÍÚ¿óʹÃü(XMR)

Çå¾²ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÐÎò£º

¼ì²âµ½ÍÚ¿óľÂí´Ó¿ó³Ø»ñÈ¡ÍÚ¿óʹÃü¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinMinerÍÚ¿óľÂí¡£¡£¡£¡£¡£¡£CoinMinerÊÇÒ»¿îÍÚ¿ó¶ñÒâ³ÌÐò £¬£¬£¬£¬£¬ÍÚ¿ó³ÌÐò»áÕ¼ÓÃCPU×ÊÔ´ £¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220517