ÿÖÜÉý¼¶Í¨¸æ-2022-06-21

Ðû²¼Ê±¼ä 2022-06-21

ÐÂÔöÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Spring-Cloud-Gateway_´úÂë×¢Èë[CVE-2022-22947][CNNVD-202203-161]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

SpringCloudGatewayÊÇ»ùÓÚSpringFrameworkºÍSpringBoot¹¹½¨µÄAPIÍø¹Ø £¬£¬£¬£¬£¬£¬£¬ËüÖ¼ÔÚΪ΢ЧÀͼܹ¹ÌṩһÖÖ¼òÆÓ¡¢ÓÐÓá¢Í³Ò»µÄAPI·ÓÉÖÎÀí·½·¨¡£¡£¡£¡£¡£Îó²îΪµ±SpringCloudGatewayÆôÓúÍ̻¶GatewayActuator¶Ëµãʱ £¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃSpringCloudGatewayµÄÓ¦ÓóÌÐò¿ÉÊܵ½´úÂë×¢Èë¹¥»÷¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔ·¢ËÍÌØÖÆµÄ¶ñÒâÇëÇó £¬£¬£¬£¬£¬£¬£¬´Ó¶øÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_Jdk8u20_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃJdk8u20µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£Èô»á¼ûµÄÓ¦Óñ£´æÎó²îJAVA·´ÐòÁл¯Îó²îÇÒʹÓÃÁËJDK°æ±¾Îª8u20¼°ÒÔϰ汾 £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß £¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£Ô¶³ÌÖ´ÐÐí§Òâ´úÂë £¬£¬£¬£¬£¬£¬£¬»ñȡϵͳ¿ØÖÆÈ¨¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_CommonsCollections7_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃCommonsCollections7µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£Èô»á¼ûµÄÓ¦Óñ£´æÎó²îJAVA·´ÐòÁл¯Îó²îÇÒʹÓÃÁËcommons-collections3.1 £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß £¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£Ô¶³ÌÖ´ÐÐí§Òâ´úÂë £¬£¬£¬£¬£¬£¬£¬»ñȡϵͳ¿ØÖÆÈ¨¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621


 

ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_CommonsCollections8_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃCommonsCollections8µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£Èô»á¼ûµÄÓ¦Óñ£´æÎó²îJAVA·´ÐòÁл¯Îó²îÇÒʹÓÃÁËcommons-collections4 £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß £¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£Ô¶³ÌÖ´ÐÐí§Òâ´úÂë £¬£¬£¬£¬£¬£¬£¬»ñȡϵͳ¿ØÖÆÈ¨¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_H2_Database_Console_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2022-23221][CNNVD-202201-1749]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

H2DatabaseConsole£¨2.1.210°æ±¾Ö®Ç°£©Öб£´æÒ»¸öÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î £¬£¬£¬£¬£¬£¬£¬¸ÃÎó²î¿ÉÄÜÔÊÐíÔ¶³Ì¹¥»÷Õßͨ¹ý°üÀ¨IGNORE_UNKNOWN_SETTINGS=TRUE;FORBID_CREATION=FALSE;INIT=RUNSCRIPT×Ó×Ö·û´®µÄjdbc:h2:memJDBCURLÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_CommonsCollections9_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃCommonsCollections9µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£Èô»á¼ûµÄÓ¦Óñ£´æÎó²îJAVA·´ÐòÁл¯Îó²îÇÒʹÓÃÁËcommons-collections3.1 £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß £¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£Ô¶³ÌÖ´ÐÐí§Òâ´úÂë £¬£¬£¬£¬£¬£¬£¬»ñȡϵͳ¿ØÖÆÈ¨¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

TCP_Java·´ÐòÁл¯_CommonsCollections10_ʹÓÃÁ´¹¥»÷

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃCommonsCollections10µÄJava·´ÐòÁл¯Ê¹ÓÃÁ´¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£Èô»á¼ûµÄÓ¦Óñ£´æÎó²îJAVA·´ÐòÁл¯Îó²îÇÒʹÓÃÁËcommons-collections3.1 £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÈ«ÐĽṹµÄJavaÐòÁл¯¹¤¾ß £¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£¡£¡£¡£¡£Ô¶³ÌÖ´ÐÐí§Òâ´úÂë £¬£¬£¬£¬£¬£¬£¬»ñȡϵͳ¿ØÖÆÈ¨¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Discuz_1.5-2.5_ÏÂÁîÖ´ÐÐÎó²î[CVE-2018-14729][CVE-2018-14729][CNNVD-201905-886]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Discuz1.5-2.5°æ±¾Öкǫ́Êý¾Ý¿â±¸·Ý¹¦Ð§Öб£´æÒ»¸öÏÂÁîÖ´ÐÐÎó²î £¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó £¬£¬£¬£¬£¬£¬£¬»ñȡЧÀÍÆ÷ȨÏÞÖ´ÐÐí§ÒâÏÂÁî £¬£¬£¬£¬£¬£¬£¬Ê¹¹¥»÷Õß¿ÉÒÔÒÔWEBȨÏÞÔÚϵͳÉÏÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

½ØÍ¼20220623132255.png


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Microsoft_SMB_¾Ü¾øÐ§ÀÍÎó²î1[CVE-2022-32230][CNNVD-202006-681]

Çå¾²ÀàÐÍ£º

¾Ü¾øÐ§ÀÍ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»ú¿ÉÄÜÕýÔÚ¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐCVE-2022-32230Îó²îʹÓõÄÐÐΪ £¬£¬£¬£¬£¬£¬£¬ÔÚSMBv3Öб£´æÒ»¸ö¿ÕÖ¸ÕëÒýÓÃÎó²î £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾­ÓÉÉí·ÝÑéÖ¤µÄ2ÇéÐÎÏ £¬£¬£¬£¬£¬£¬£¬Í¨¹ýnetlogonµÈ²»ÐèÒª¾ÙÐÐÉí·ÝÑéÖ¤µÄ¹ÜµÀÔ¶³Ì·¢ËÍÊý¾ÝÍê³ÉÎó²îʹÓà £¬£¬£¬£¬£¬£¬£¬Îó²îʹÓÃÀֳɺó»áʹÊܺ¦ÕßÀ¶ÆÁ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Microsoft_SMB_¾Ü¾øÐ§ÀÍÎó²î2[CVE-2022-32230][CNNVD-202006-681]

Çå¾²ÀàÐÍ£º

¾Ü¾øÐ§ÀÍ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»ú¿ÉÄÜÕýÔÚ¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐCVE-2022-32230Îó²îʹÓõÄÐÐΪ £¬£¬£¬£¬£¬£¬£¬ÔÚSMBv3Öб£´æÒ»¸ö¿ÕÖ¸ÕëÒýÓÃÎó²î £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾­ÓÉÉí·ÝÑéÖ¤µÄ2ÇéÐÎÏ £¬£¬£¬£¬£¬£¬£¬Í¨¹ýnetlogonµÈ²»ÐèÒª¾ÙÐÐÉí·ÝÑéÖ¤µÄ¹ÜµÀÔ¶³Ì·¢ËÍÊý¾ÝÍê³ÉÎó²îʹÓà £¬£¬£¬£¬£¬£¬£¬Îó²îʹÓÃÀֳɺó»áʹÊܺ¦ÕßÀ¶ÆÁ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Microsoft_SMB_¾Ü¾øÐ§ÀÍÎó²î[CVE-2022-32230][CNNVD-202006-681]

Çå¾²ÀàÐÍ£º

¾Ü¾øÐ§ÀÍ

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»ú¿ÉÄÜÕýÔÚ¶ÔÄ¿µÄÖ÷»ú¾ÙÐÐCVE-2022-32230Îó²îʹÓõÄÐÐΪ £¬£¬£¬£¬£¬£¬£¬ÔÚSMBv3Öб£´æÒ»¸ö¿ÕÖ¸ÕëÒýÓÃÎó²î £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚδ¾­ÓÉÉí·ÝÑéÖ¤µÄ2ÇéÐÎÏ £¬£¬£¬£¬£¬£¬£¬Í¨¹ýnetlogonµÈ²»ÐèÒª¾ÙÐÐÉí·ÝÑéÖ¤µÄ¹ÜµÀÔ¶³Ì·¢ËÍÊý¾ÝÍê³ÉÎó²îʹÓà £¬£¬£¬£¬£¬£¬£¬Îó²îʹÓÃÀֳɺó»áʹÊܺ¦ÕßÀ¶ÆÁ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_LinuxÏÂÁî×¢Èë¹¥»÷

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

ÏÂÁî×¢Èë¹¥»÷ £¬£¬£¬£¬£¬£¬£¬ÊÇÖ¸ÕâÑùÒ»ÖÖ¹¥»÷ÊÖ¶Î £¬£¬£¬£¬£¬£¬£¬ºÚ¿Íͨ¹ý°ÑϵͳÏÂÁî¼ÓÈëµ½webÇëÇóÒ³ÃæÍ·²¿ÐÅÏ¢ÖÐ £¬£¬£¬£¬£¬£¬£¬Ò»¸ö¶ñÒâºÚ¿ÍÒÔʹÓÃÕâÖÖ¹¥»÷ÒªÁìÀ´²»·¨»ñÈ¡Êý¾Ý»òÕßÍøÂ硢ϵͳ×ÊÔ´¡£¡£¡£¡£¡£null

¸üÐÂʱ¼ä£º

20220621


 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_GitLab_Ó²±àÂëÎó²î[CVE-2022-1162][CNNVD-202204-1842]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

GitLabÊÇÒ»¸öÓÃÓÚ¿ÍÕ»ÖÎÀíϵͳµÄ¿ªÔ´ÏîÄ¿ £¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃGit×÷Ϊ´úÂëÖÎÀí¹¤¾ß £¬£¬£¬£¬£¬£¬£¬¿Éͨ¹ýWeb½çÃæ»á¼û¹ûÕæ»ò˽ÈËÏîÄ¿¡£¡£¡£¡£¡£ÔÚGitLabCE/EE°æ±¾14.7(14.7.7֮ǰ)¡¢14.8(14.8.5֮ǰ)ºÍ14.9(14.9.2֮ǰ)ÖÐʹÓÃOmniAuthÌṩÉÌ(ÈçOAuth¡¢LDAP¡¢SAML)×¢²áµÄÕÊ»§ÉèÖÃÁËÓ²±àÂëÃÜÂë £¬£¬£¬£¬£¬£¬£¬ÔÊÐí¹¥»÷ÕßDZÔڵؿØÖÆÕÊ»§¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621

 

ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_Linux.DDoS.Gafgyt_¿ØÖÆÏÂÁî

Çå¾²ÀàÐÍ£º

ÆäËûÊÂÎñ

ÊÂÎñÐÎò£º

¼ì²âµ½GafgytЧÀÍÆ÷ÊÔͼ·¢ËÍÏÂÁî¸øGafgyt £¬£¬£¬£¬£¬£¬£¬Ä¿µÄIPÖ÷»ú±»Ö²ÈëÁËGafgyt¡£¡£¡£¡£¡£DDoS.GafgytÊÇÒ»¸öÀàLinuxƽ̨ϵĽ©Ê¬ÍøÂç £¬£¬£¬£¬£¬£¬£¬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿µÄ»úеÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£¶ÔÖ¸¶¨Ä¿µÄÖ÷»úÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621


 

ÊÂÎñÃû³Æ£º

HTTP_ͨÓÃÊÂÎñ_·¢Ã÷¶à´Îunicode±àÂëÐÐΪ

Çå¾²ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÐÎò£º

JavaĬÈϵıàÂë·½·¨ÎªUnicode £¬£¬£¬£¬£¬£¬£¬ÔÚjavaÓïÑԺͲ¿·Ö.net³ÌÐòÖÐ £¬£¬£¬£¬£¬£¬£¬unicode±àÂë¿É±»×Ô¶¯´¦Öóͷ£ÆÊÎö³É×Ö·û´®¡£¡£¡£¡£¡£¶à´Îunicode±àÂë¿ÉÄÜΪ¹¥»÷ÕßʵÑéÈÆ¹ý¼ì²â×°±¸µÄÐÐΪ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20220621