Danfoss SCADA²úÆ·¶à¸ö·ì϶°²È«¹«¸æ
°ä²¼¹¦·ò 2019-09-09¡ñ·ì϶±àºÅºÍ¼¶±ð
CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
Danfoss SCADA AK-EM 800²úÆ·
¡ñ·ì϶¸ÅÊö
×êÑÐÈËÔ±ÔÚDanfoss SCADA²úÆ·Öз¢ÏÖÁËÁ½¸öÑϳÁ·ì϶¡£
Ò»¸öÊÇÏÖʵÉÏÓµÓиßȨÏÞÖ°ÄܵÄÖÎÀíÈí¼þµÄºóÃÅ¡£¹ÌÈ»´´½¨Õâ¸öºóÃÅ¿ÉÄÜÊÇΪÁËÔ®ÊÖ¹©¸øÉ̵ÄÖ§³ÖÍŶӵǼϵͳÀ´ÐÖúËûÃǵĿͻ§£¬µ«ÃÜÂëÄܹ»ºÜÈÝÒ׵ر»¹¥»÷ÕßÆÆ½â¡£¼´±ãÃÜÂë²úÉú±ä¶¯£¬Risk Based SecurityµÄ×êÑÐÍŶÓÒ²¿ÉÄܱàдһ¸ö·¨Ê½£¬ÔÚÖ°ºÎ¸ø°´¹¦·òÌìÉúÕýÈ·µÄÃÜÂë¡£Ò»µ©ÒÔÕâÖÖ·½Ê½»ñµÃ½Ó¼û£¬¹¥»÷Õß¾ÍÄܹ»Ö´Ðи÷Àà²Ù×÷£¬Ô̺¬ÔڵײãÊý¾Ý¿âÖй«¿ªºÍ°Ñ³ÖÊý¾Ý£¬»òÕß³ÁÖó¬µÈÖÎÀíÔ±µÄÃÜÂ룬¶øºóÔÚÓµÓÐÆëȫȨÏÞµÄÕÊ»§ÏµÇ¼¡£
ÁíÒ»¸öÑϳÁ·ì϶Êǵ±½Ó¼ûÓ×·þÎñ·¨Ê½Ê±È±Ò»Ð©¿É²é³£¬ÔÊÐíÖ´ÐÐÃô¸ÐµÄÊý¾Ý¿â²éÎÊ£¬ÀýÈ磬¹«¿ªÓû§ÃûºÍÃÜÂë¡£
¡ñ·ì϶ÑéÖ¤
ÔÝÎÞPOC/EXP¡£
¡ñ½¨¸´½¨Òé
Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬ÏÂÔØÁ´½Ó£ºhttps://www.danfoss.com/en/service-and-support/downloads/dcs/adap-kool-software/ak-em-800/#tab-overview¡£
¡ñ²Î¿¼Á´½Ó
https://www.helpnetsecurity.com/2019/09/05/danfoss-scada-vulnerabilities/


¾©¹«Íø°²±¸11010802024551ºÅ