Danfoss SCADA²úÆ·¶à¸ö·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-09-09

¡ñ·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


¡ñÓ°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


Danfoss SCADA AK-EM 800²úÆ·


¡ñ·ì϶¸ÅÊö


×êÑÐÈËÔ±ÔÚDanfoss SCADA²úÆ·Öз¢ÏÖÁËÁ½¸öÑϳÁ·ì϶¡£


Ò»¸öÊÇÏÖʵÉÏÓµÓиßȨÏÞÖ°ÄܵÄÖÎÀíÈí¼þµÄºóÃÅ¡£¹ÌÈ»´´½¨Õâ¸öºóÃÅ¿ÉÄÜÊÇΪÁËÔ®ÊÖ¹©¸øÉ̵ÄÖ§³ÖÍŶӵǼϵͳÀ´Ð­ÖúËûÃǵĿͻ§£¬µ«ÃÜÂëÄܹ»ºÜÈÝÒ׵ر»¹¥»÷ÕßÆÆ½â¡£¼´±ãÃÜÂë²úÉú±ä¶¯£¬Risk Based SecurityµÄ×êÑÐÍŶÓÒ²¿ÉÄܱàдһ¸ö·¨Ê½£¬ÔÚÖ°ºÎ¸ø°´¹¦·òÌìÉúÕýÈ·µÄÃÜÂë¡£Ò»µ©ÒÔÕâÖÖ·½Ê½»ñµÃ½Ó¼û£¬¹¥»÷Õß¾ÍÄܹ»Ö´Ðи÷Àà²Ù×÷£¬Ô̺¬ÔڵײãÊý¾Ý¿âÖй«¿ªºÍ°Ñ³ÖÊý¾Ý£¬»òÕß³ÁÖó¬µÈÖÎÀíÔ±µÄÃÜÂ룬¶øºóÔÚÓµÓÐÆëȫȨÏÞµÄÕÊ»§ÏµÇ¼¡£


ÁíÒ»¸öÑϳÁ·ì϶Êǵ±½Ó¼ûÓ×·þÎñ·¨Ê½Ê±È±Ò»Ð©¿É²é³­£¬ÔÊÐíÖ´ÐÐÃô¸ÐµÄÊý¾Ý¿â²éÎÊ£¬ÀýÈ磬¹«¿ªÓû§ÃûºÍÃÜÂë¡£


¡ñ·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


¡ñ½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬ÏÂÔØÁ´½Ó£ºhttps://www.danfoss.com/en/service-and-support/downloads/dcs/adap-kool-software/ak-em-800/#tab-overview¡£


¡ñ²Î¿¼Á´½Ó


https://www.helpnetsecurity.com/2019/09/05/danfoss-scada-vulnerabilities/