ÿÖÜÉý¼¶²¼¸æ-2022-09-06
°ä²¼¹¦·ò 2022-09-06
ÊÂÎñÃû³Æ£º | HTTP_Îļþ²Ù×÷¹¥»÷_VMware_vCenter_Server_ÎļþÉÏ´«[CVE-2021-22005] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | VMwareÊÇÒ»¼ÒÔÆ»ù´¡¼Ü¹¹ºÍÒÆ¶¯ÉÌÎñ½â¾ö¹æ»®³§ÉÌ£¬Ìṩ»ùÓÚVMwareµÄÐé¹¹»¯½â¾ö¹æ»®¡£2021Äê9ÔÂ22ÈÕ£¬VMware¹Ù·½°ä²¼°²È«²¼¸æ£¬Åû¶ÁËÔ̺¬CVE-2021-22005VMwarevCenterServerËÁÒâÎļþÉÏ´«·ì϶ÔÚÄڵĶà¸öÖиßΣÑϳÁ·ì϶¡£Êܸ÷ì϶µÄÓ°Ïì°æ±¾ÎªVMwarevCenterServer7.0ϵÁÐ<7.0U2c,VMwarevCenterServer6.7ϵÁÐ<6.7U3o,ÔÚCVE-2021-22005ÖУ¬¹¥»÷Õ߿ɻú¹Ø¶ñÒâÒªÇó£¬Í¨¹ývCenterÖеÄAnalytics·þÎñ£¬¿ÉÉÏ´«¶ñÒâÎļþ£¬´Ó¶øÔì³ÉÔ¶³Ì´úÂëÖ´Ðзì϶¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | HTTP_ÌáȨ¹¥»÷_Zabbix_Ó×ÓÚ4.4_δÊÚȨ½Ó¼û |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ZabbixÊÇÀÍÑάÑÇZabbixSIA¹«Ë¾µÄÒ»Ì׿ªÔ´µÄ¼à¿ØÏµÍ³¡£¸Ãϵͳ¿É¼à¶½¸÷ÀàÍøÂç²ÎÊý£¬²¢Ìṩ֪ͨ»úÔìÈÃϵͳÖÎÀíÔ±¼±¾ç¶¨Î»¡¢½â¾ö´æÔڵĸ÷ÀàÎÊÌâ¡£Zabbix´æÔÚÒ»¸öδÊÚȨ½Ó¼û·ì϶£¬Í¨¹ý¸Ã·ì϶£¬¹¥»÷ÕßÄܹ»ÔÚδ¾ÊÚȨµÄÇé¿öϽӼûZabbix·þÎñÆ÷ÉϵÄÊý¾Ý£¬µ¼ÖÂÃô¸ÐÐÅϢй¶¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | TCP_ľÂíºóÃÅ_wmRat(ÂûÁ黨)_ÏÎ½Ó |
°²È«ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½wmRatÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËwmRat¡£wmRatÊÇÂûÁ黨×éÖ¯ËùʹÓÃÁËÒ»¸öÇáÁ¿»¯ºóÃÅ£¬»ùÓÚCSharp˵»°£¬ÔËÐкó£¬Äܹ»ÆëÈ«½ÚÔì±»Ö²Èë»úе¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | TCP_½©Ê¬ÍøÂç_Orchard_ÏÎ½Ó |
°²È«ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½½©Ê¬ÍøÂçOrchardÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçOrchard¡£OrchardÊÇ2021Äê2Ô³öÏÖµÄÒ»¸ö½©Ê¬ÍøÂ磬ʹÓÃDGA¼¼ÊõÆ¥µÐ¼ì²â¡£Ö÷ÌâÖ°ÄÜÔÚÊܺ¦Õß»úеÉÏ×°Öø÷Àà¶ñÒâÈí¼þ£¬Ä¿Ç°ÎªÖ¹£¬ÖØÒªÏÂÔØÃÅÂÞ±ÒÍÚ¿óÈí¼þ½øÐÐÍÚ¿ó¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | DNS_¿ÉÒÉÐÐΪ_oast_´ø±í²éÎÊ |
°²È«ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÃèÊö£º | oastÊÇÒ»¸öÃâ·ÑµÄ¡¢ÎÞÐè×¢²á¾ÍÄܹ»¼±¾çʹÓõÄDNSLogƽ̨£¬¿ÉÄܶԷ¢ËÍ´ÓǰµÄDNSÒªÇó½øÐмͼ¡£Ê±Ê±±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐкÅÁîÁ˾ֵĻØÏÔ¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | DNS_¿ÉÒÉÐÐΪ_interact_´ø±í²éÎÊ |
°²È«ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÃèÊö£º | interact.shÊÇinteract.sh¹¤¾ßÅäÌ×µÄDNSLogƽ̨£¬¿ÉÄܶԷ¢ËÍ´ÓǰµÄDNSÒªÇó½øÐмͼ¡£Ê±Ê±±»¹¥»÷ÕßÓÃÓÚ´«ÊäÖ´ÐкÅÁîÁ˾ֵĻØÏÔ¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Struts2_S2-045_´úÂëÖ´ÐÐ[CVE-2017-5638] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜºÅÁîÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£ÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´Ðзì϶£¬¹¥»÷ÕßÄܹ»ÔÚÎļþÉÏ´«Ê±Í¨¹ý»ú¹ØHTTPÒªÇóÍ·ÖеÄContent-TypeÖµ¿ÉÄÜÔì³ÉÔ¶³Ì´úÂëÖ´Ðзì϶¡£·ì϶´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10³¢ÊÔ²âÊÔÑéÖ¤ApacheStruts2S2-045Ô¶³Ì´úÂëÖ´Ðзì϶£¬²âÊÔ²»ÓµÓй¥»÷ÐÔ£¬µ«¿ÉÄܶ³öϵͳ´àÈõÐÔÌØµã¡£ |
¸üй¦·ò£º | 20220906 |
ÊÂÎñÃû³Æ£º | TCP_ÌáȨ¹¥»÷_Struts2_S2-046_´úÂëÖ´ÐÐ[CVE-2017-5638] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýApacheStruts2¿ò¼ÜºÅÁîÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£¹¥»÷ÕßÔÚʹÓÃJakarta²å¼þ´¦ÖÃÎļþÉÏ´«²Ù×÷ʱ¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´Ðзì϶£¬»ú¹Ø¶ñÒâOGNLʹµÃÉÏ´«ÎļþµÄ´óС£¨ÓÉContent-LengthÍ·Ö¸¶¨£©´óÓÚStruts2ÔÊÐíµÄ×î´ó´óÓ×2GB¡£·ì϶´æÔڵİ汾£ºStruts2.3.5-Struts2.3.31£¬Struts2.5-Struts2.5.10¹¥»÷³É¹¦£¬¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£ |
¸üй¦·ò£º | 20220906 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ÐÅϢй¶_Ŀ¼±éÀú[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚ³¢ÊÔ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐĿ¼´©Ô½·ì϶¹¥»÷³¢ÊÔµÄÐÐΪ¡£Ä¿Â¼´©Ô½·ì϶ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ½Ó¼ûÏÞ¶È£¬¶Ôweb¸ùĿ¼ÒÔ±íµÄÎļþ¼Ð£¬ËÁÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£´Ë¹æ¶¨ÊÇÒ»ÌõͨÓù涨£¬ÆäËû·ì϶£¨ÉõÖÁһЩ0day·ì϶£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´ËÊÂÎñ±¨¾¯¡£ÓÉÓÚÕý³£ÒµÎñÖÐͨ³£²»»á²úÉú´ËÊÂÎñÌØµãµÄÁ÷Á¿£¬ËùÒÔ±ØÒª³Áµã¹Ø×¢¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß½Ó¼ûÃô¸ÐÎļþ¡£ |
¸üй¦·ò£º | 20220906 |


¾©¹«Íø°²±¸11010802024551ºÅ