ÿÖÜÉý¼¶²¼¸æ-2022-07-23

°ä²¼¹¦·ò 2022-07-23

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Mida_Solutions_eFramework_2.8.9_²Ù×÷ϵͳºÅÁî×¢Èë·ì϶[CVE-2020-15922][CNNVD-202007-1515]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃCVE-2020-15922·ì϶¶ÔÖ÷ÕÅÖ÷»ú½øÐй¥»÷¡£MidaSolutionseFrameworkÊÇÒâ´óÀûMidaSolutions¹«Ë¾µÄÒ»Ì×ͳһͨѶºÍºÏ×÷·þÎñÌ×¼þ¡£MidaSolutionseFramework2.9.0°æ±¾ÖдæÔÚ²Ù×÷ϵͳºÅÁî×¢Èë·ì϶¡£Ô¶³Ì¹¥»÷Õß¿ÉÀûÓø÷ì϶ÒÔrootȨÏÞÖ´ÐдúÂë¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÍÚ¿óľÂí_CoinMiner_ÃÅÂÞ±ÒJSON-RPCºÍ̸_ÍÚ¿ó½ÚÔìºÅÁîͨѶ_ÒÉËÆÅ²ÓÃÍÚ¿óAPIº¯Êý1(XMR)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¸ÃÊÂÎñÅú×¢¼ì²âµ½Ê¹ÓÃJSON-RPCºÍ̸ÒÉËÆÅ²ÓÃÁËÃÅÂÞ±ÒÍÚ¿óAPIº¯Êý¡£JSON-RPCÊÇÒ»ÖÖ»ùÓÚJSONµÄ¿ç˵»°Ô¶³ÌŲÓúÍ̸¡£ÓÐÎı¾´«ÊäÊý¾ÝÓ× £¬±ãÓÚµ÷ÊÔÀ©´óµÄÌØµã¡£Ëü¹æ·¶½ç˵ÁËÊý¾Ý½á¹¹¼°ÏàÓ¦µÄ´¦Öù涨,¹æ·¶Ê¹ÓÃJSON£¨RFC4627£©Êý¾ÝÌåʽ £¬¹æ·¶×ÔÉíÊÇ´«ÊäÎ޹صÄ £¬Äܹ»ÓÃÓÚ¹ý³ÌÄÚͨѶ¡¢socketÌ×½Ó×Ö¡¢HTTP»ò¸÷ÀàÐÂÎÅͨѶ»·¾³¡£ÃÅÂÞ±ÒÀûÓÿª·¢½Ó¿ÚѡȡJSON-PRC³ß¶È £¬ÓÉÓÚËüÊÇ´«ÊäÎ޹صÄ £¬Äܹ»Ê¹ÓÃËüͨ¹ýÌ×½Ó×Ö»òHTTPÓëÍÚ¿ó½Úµã½»»¥¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´ £¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÍÚ¿óľÂí_CoinMiner_ÃÅÂÞ±ÒJSON-RPCºÍ̸_ÍÚ¿ó½ÚÔìºÅÁîͨѶ_ÒÉËÆÅ²ÓÃÍÚ¿óAPIº¯Êý2(XMR)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¸ÃÊÂÎñÅú×¢¼ì²âµ½Ê¹ÓÃJSON-RPCºÍ̸ÒÉËÆÅ²ÓÃÁËÃÅÂÞ±ÒÍÚ¿óAPIº¯Êý¡£JSON-RPCÊÇÒ»ÖÖ»ùÓÚJSONµÄ¿ç˵»°Ô¶³ÌŲÓúÍ̸¡£ÓÐÎı¾´«ÊäÊý¾ÝÓ× £¬±ãÓÚµ÷ÊÔÀ©´óµÄÌØµã¡£Ëü¹æ·¶½ç˵ÁËÊý¾Ý½á¹¹¼°ÏàÓ¦µÄ´¦Öù涨,¹æ·¶Ê¹ÓÃJSON£¨RFC4627£©Êý¾ÝÌåʽ £¬¹æ·¶×ÔÉíÊÇ´«ÊäÎ޹صÄ £¬Äܹ»ÓÃÓÚ¹ý³ÌÄÚͨѶ¡¢socketÌ×½Ó×Ö¡¢HTTP»ò¸÷ÀàÐÂÎÅͨѶ»·¾³¡£ÃÅÂÞ±ÒÀûÓÿª·¢½Ó¿ÚѡȡJSON-PRC³ß¶È £¬ÓÉÓÚËüÊÇ´«ÊäÎ޹صÄ £¬Äܹ»Ê¹ÓÃËüͨ¹ýÌ×½Ó×Ö»òHTTPÓëÍÚ¿ó½Úµã½»»¥¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´ £¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÍÚ¿óľÂí_CoinMiner_ÒÔÌ«·»JSON-RPCºÍ̸_ÍÚ¿ó½ÚÔìºÅÁîͨѶ_ÒÉËÆÅ²ÓÃÍÚ¿óAPIº¯Êý1(ETH)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¸ÃÊÂÎñÅú×¢¼ì²âµ½Ê¹ÓÃJSON-RPCºÍ̸ÒÉËÆÅ²ÓÃÁËÒÔÌ«·»ÍÚ¿óAPIº¯Êý¡£JSON-RPCÊÇÒ»ÖÖ»ùÓÚJSONµÄ¿ç˵»°Ô¶³ÌŲÓúÍ̸¡£ÓÐÎı¾´«ÊäÊý¾ÝÓ× £¬±ãÓÚµ÷ÊÔÀ©´óµÄÌØµã¡£JSON-RPCÊÇÒ»ÖÖÎÞ״̬ÇáÁ¿¼¶Ô¶³Ì¹ý³ÌŲÓã¨RPC£©ºÍ̸ £¬¹æ·¶½ç˵ÁËÊý¾Ý½á¹¹¼°ÏàÓ¦µÄ´¦Öù涨,¹æ·¶Ê¹ÓÃJSON£¨RFC4627£©Êý¾ÝÌåʽ £¬¹æ·¶×ÔÉíÊÇ´«ÊäÎ޹صÄ £¬Äܹ»ÓÃÓÚ¹ý³ÌÄÚͨѶ¡¢socketÌ×½Ó×Ö¡¢HTTP»ò¸÷ÀàÐÂÎÅͨѶ»·¾³¡£ÒÔÌ«·»ÀûÓÿª·¢½Ó¿ÚѡȡJSON-PRC³ß¶È £¬ÓÉÓÚËüÊÇ´«ÊäÎ޹صÄ £¬Äܹ»Ê¹ÓÃËüͨ¹ýÌ×½Ó×Ö»òHTTPÓëETH½Úµã½»»¥¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´ £¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÍÚ¿óľÂí_CoinMiner_ÒÔÌ«·»JSON-RPCºÍ̸_ÍÚ¿ó½ÚÔìºÅÁîͨѶ_ÒÉËÆÅ²ÓÃÍÚ¿óAPIº¯Êý2(ETH)

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¸ÃÊÂÎñÅú×¢¼ì²âµ½Ê¹ÓÃJSON-RPCºÍ̸ÒÉËÆÅ²ÓÃÁËÒÔÌ«·»ÍÚ¿óAPIº¯Êý¡£JSON-RPCÊÇÒ»ÖÖ»ùÓÚJSONµÄ¿ç˵»°Ô¶³ÌŲÓúÍ̸¡£ÓÐÎı¾´«ÊäÊý¾ÝÓ× £¬±ãÓÚµ÷ÊÔÀ©´óµÄÌØµã¡£JSON-RPCÊÇÒ»ÖÖÎÞ״̬ÇáÁ¿¼¶Ô¶³Ì¹ý³ÌŲÓã¨RPC£©ºÍ̸ £¬¹æ·¶½ç˵ÁËÊý¾Ý½á¹¹¼°ÏàÓ¦µÄ´¦Öù涨,¹æ·¶Ê¹ÓÃJSON£¨RFC4627£©Êý¾ÝÌåʽ £¬¹æ·¶×ÔÉíÊÇ´«ÊäÎ޹صÄ £¬Äܹ»ÓÃÓÚ¹ý³ÌÄÚͨѶ¡¢socketÌ×½Ó×Ö¡¢HTTP»ò¸÷ÀàÐÂÎÅͨѶ»·¾³¡£ÒÔÌ«·»ÀûÓÿª·¢½Ó¿ÚѡȡJSON-PRC³ß¶È £¬ÓÉÓÚËüÊÇ´«ÊäÎ޹صÄ £¬Äܹ»Ê¹ÓÃËüͨ¹ýÌ×½Ó×Ö»òHTTPÓëETH½Úµã½»»¥¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´ £¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ľÂí_Webmine¼Ò×å_ÍøÒ³ÍÚ¿óľÂí_Ö´ÐÐä¯ÀÀÆ÷ÍÚ¿ó

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¼ì²âµ½ÍøÒ³ÖÐÔ̺¬ÍÚ¿ó¾ç±¾´úÂë¡£WebmineÒ²ÊÇÒ»¸öÓëCoinhiveÀàËÆµÄJSÍÚ¿óÒýÇæ £¬ÔÚÓнӼûÁ¿µÄÍøÕ¾ÖÐǶÈëÒ»¶ÎÍøÒ³ÍÚ¿ó´úÂë £¬ÀûÓ÷ÿ͵ÄÍÆËã»úCPU×ÊÔ´À´ÍÚ¾òÊý×ÖÇ®±Ò½øÐÐIJÀû¡£ÍÚ¿ó¾ç±¾Ö´ÐлáÕ¼ÓÃCPU×ÊÔ´ £¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Jenkins-Git-client²å¼þ_´úÂëÖ´ÐÐ[CVE-2019-10392][CNNVD-201909-632]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

µ±Ç°Ö÷»úÔÚÔâ·êJenkins-Git-client²å¼þ_Ô¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ó°ÏìÁìÓòGitclientPlugin<=2.8.4

¸üй¦·ò£º

20220723



ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Zabbix-API-JSON-RPC_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ZabbixÊÇÒ»¸ö»ùÓÚWEB½çÃæµÄÉ¢²¼Ê½ÏµÍ³¼à¶½ÒÔ¼°ÍøÂç¼à¶½µÄÆóÒµ¼¶¿ªÔ´½â¾ö¹æ»®¡£ZabbixÄܼල¸÷ÀàÍøÂç²ÎÊý £¬±£ÕÏ·þÎñÆ÷ϵͳµÄ°²È«ÔËÓª £¬²¢Ìṩ½Ã½ÝµÄ֪ͨ»úÔìÒÔ±ãϵͳÖÎÀíÔ±¼±¾ç¶¨Î»ºÍ½â¾ö´æÔڵĸ÷ÀàÎÊÌâ¡£ËüÓÉÁ½²¿ÃÅ×é³É £¬ZabbixServerÓë¿ÉÑ¡×é¼þZabbixAgent¡£ZabbixserverÄܹ»Í¨¹ýSNMP £¬ZabbixAgent £¬ping £¬¶Ë¿Ú¼à¶½µÈ²½ÖèÌṩ¶ÔÔ¶³Ì·þÎñÆ÷/ÍøÂç״̬µÄ¼à¶½ £¬Êý¾ÝÍøÂçµÈÖ°ÄÜ £¬ËüÄܹ»ÔËÐÐÔÚLinux £¬Solaris £¬HP-UX £¬AIX £¬FreeBSD £¬OpenBSD £¬OSXµÈƽ̨ÉÏ¡£ÔÚÆäjsonrpc2.0°æ±¾´æÔÚÔ¶³ÌºÅÁîÖ´Ðзì϶ £¬¹¥»÷Õß¿Éͨ¹ý´Ë·ì϶»ñÈ¡·þÎñÆ÷ȨÏÞ £¬·çÏÕϵͳ°²È«¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_¿ÉÒÉ·´µ¯shellºÅÁî×¢Èë_¹¥»÷ʧ°Ü

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅÖ÷»ú½øÐÐBASH_·´µ¯shellºÅÁî×¢Èë¹¥»÷¡£·´µ¯ÏνÓ £¬ÊÇÖ¸¹¥»÷ÕßÖ¸¶¨·þÎñ¶Ë £¬Êܺ¦ÕßÖ÷»ú×Ô¶¯Ïνӹ¥»÷ÕߵķþÎñ¶Ë·¨Ê½¡£·´µ¯shellͨ³£ÓÃÓÚ±»¿Ø¶ËÒò·À»ðǽÊÜÏÞ¡¢È¨ÏÞ²»¼°¡¢¶Ë¿Ú±»Õ¼ÓõÈÇé¾°¡£¹¥»÷Õß¹¥»÷³É¹¦ºóÄܹ»Ô¶³ÌÖ´ÐÐϵͳºÅÁî¡£µ±Ö´ÐÐbash·´µ¯shellºÅÁîÓÐÎóʱ £¬»á·µ»Øbash:nojobcontrolinthisshell

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Tp-Link_´úÂëÖ´ÐÐ[CVE-2022-30075][CNNVD-202206-881]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ÔÚTp-Link·ÓÉÆ÷ÖнøÐÐÉí·ÝÑéÖ¤µÄÔ¶³Ì´úÂëÖ´ÐÐ £¬Í¨¹ýÉí·ÝÑéÖ¤ºó¿ÉÀûÓñ¸·ÝÎļþÔ̺¬½øÐÐËÁÒâ´úÂëÖ´ÐÐ

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_PHP_imap_ºÅÁîÖ´ÐÐ[CVE-2018-19518][CNNVD-201811-666]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ÔÚPHPºÍÆäËû²úÆ·µÄimap_open£¨£©ÖÐʹÓõÄUNIXÉϵĻªÊ¢¶Ù´óѧIMAP¹¤¾ß°ü2007fÆô¶¯rshºÅÁ½èÖúÓÚc-client/imap4r1.cÖеÄimap_rimapº¯ÊýºÍosdep/unix/tcp_unixÖеÄtcp_aopenº¯Êý.c£© £¬¶ø²»»á×èÖ¹²ÎÊý×¢Èë £¬ÈôÊÇIMAP·þÎñÆ÷Ãû³ÆÊDz»ÊÜÐÅÀµµÄÊäÈ루ÀýÈç £¬ÓÉWebÀûÓ÷¨Ê½µÄÓû§ÊäÈ룩 £¬²¢ÇÒrshÒѱ»ÓµÓÐ·ÖÆç²ÎÊýµÄ·¨Ê½´úÌæ £¬ÔòÔ¶³Ì¹¥»÷Õß¿ÉÄÜ»áÖ´ÐÐËÁÒâOSºÅÁîÓïÒå¡£ÀýÈç £¬ÈôÊÇrshÊÇsshµÄÁ´½Ó£¨ÈçÔÚDebianºÍUbuntuϵͳÉÏ¿´µ½µÄ£© £¬Ôò¹¥»÷Äܹ»Ê¹ÓÃÔ̺¬¡°-oProxyCommand¡±²ÎÊýµÄIMAP·þÎñÆ÷Ãû³Æ¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÆäËü¿ÉÒÉÐÐΪ_XML-dtd±íÁ¬_ÆäËû×¢Èë

°²È«ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÃèÊö:

XXE(XMLExternalEntityInjection)XML±í²¿ÊµÌå×¢Èë £¬XMLÊÇÒ»ÖÖÀàËÆÓÚHTML£¨³¬Îı¾ÏóÕ÷˵»°£©µÄ¿ÉÀ©´óÏóÕ÷˵»° £¬ÊÇÓÃÓÚÏóÕ÷µç×ÓÎļþʹÆäÓµÓнṹÐÔµÄÏóÕ÷˵»° £¬Äܹ»ÓÃÀ´ÏóÕ÷Êý¾Ý¡¢½ç˵Êý¾ÝÀàÐÍ £¬ÊÇÒ»ÖÖÔÊÐíÓû§¶Ô×Ô¼ºµÄÏóÕ÷˵»°½øÐнç˵µÄԴ˵»°¡£XMLÎĵµ½á¹¹Ô̺¬XMLÉêÃ÷¡¢DTDÎĵ·àÐͽç˵£¨¿ÉÑ¡£©¡¢ÎĵµÔªËØ¡£µ±ÀûÓÃÊÇͨ¹ýÓû§ÉÏ´«µÄXMLÎļþ»òPOSTÒªÇó½øÐÐÊý¾ÝµÄ´«Êä £¬²¢ÇÒÀûÓÃûÓв»ÈÝXMLÒýÓÃ±í²¿ÊµÌå £¬Ò²Ã»ÓйýÂËÓû§Ìá½»µÄXMLÊý¾Ý £¬ÄÇô¾Í»á²úÉúXML±í²¿ÊµÌå×¢Èë·ì϶ £¬¼´XXE·ì϶¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_PhpSpy2013-MysqlÊý¾Ý¿âÖÎÀí_Webshell½Ó¼û

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö:

Á÷Á¿Öмì²âµ½phpspy2013ÖÎÀímysqlÊý¾Ý¿âµÄ²Ù×÷ £¬¿ÉÄÜWebshellÒѱ»Ö²ÈëÔÚ½øÐÐÏνÓÐÐΪ¡£webshellÊÇwebÈëÇֵľ籾¹¥»÷¹¤¾ß¡£µ¥Ò»Ëµ £¬webshell¾ÍÊÇÒ»¸öÓÃasp»òphpµÈ±àдµÄľÂíºóÃÅ £¬¹¥»÷ÕßÔÚÈëÇÖÁËÒ»¸öÍøÕ¾ºó £¬Ê±Ê±½«ÕâЩasp»òphpµÈľÂíºóÃÅÎļþ¸éÖÃÔÚÍøÕ¾·þÎñÆ÷µÄwebĿ¼ÖÐ £¬ÓëÕý³£µÄÍøÒ³Îļþ»ìÔÚһ·¡£¶øºó¹¥»÷Õß¾ÍÄܹ»ÓÃwebµÄ·½Ê½ £¬Í¨¹ý¸ÃľÂíºóÃŽÚÔìÍøÕ¾·þÎñÆ÷ £¬Ô̺¬ÉÏ´«ÏÂÔØÎļþ¡¢²é¿´Êý¾Ý¿â¡¢Ö´ÐÐËÁÒⷨʽºÅÁîµÈ¡£webshellÄܹ»´©Ô½·À»ðǽ £¬ÓÉÓÚÓë±»½ÚÔìµÄ·þÎñÆ÷»òÔ¶³ÌÖ÷»ú»¥»»µÄÊý¾Ý¶¼ÊÇͨ¹ý80¶Ë¿Ú´«µÝµÄ £¬Òò¶ø²»»á±»·À»ðǽÀ¹½Ø¡£²¢ÇÒʹÓÃwebshellͨ³£²»»áÔÚϵͳÈÕÖ¾ÖÐÁôϼͼ £¬Ö»»áÔÚÍøÕ¾µÄwebÈÕÖ¾ÖÐÁôÏÂһЩÊý¾ÝÌá½»¼Í¼ £¬ÖÎÀíÔ±½ÏÄÑ¿´³öÈëÇÖºÛ¼£¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_΢ÐÅĬÈÏ×Ô´øä¯ÀÀÆ÷-´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

΢ÐÅwindows°æ<3.1.2.141°æ±¾ÊÜchromev8ÒýÇæ·ì϶ӰÏì £¬¹¥»÷ÕßÄܹ»½«¶ñÒâµÄ´¹µöÓʼþ·¢Ë͸øÖ¸±êÈËÔ± £¬Ö¸±êÈËÔ±ÓÃ΢ÐÅ×Ô´øä¯ÀÀÆ÷´ò¿ªºóÔò»á´¥·¢·ì϶ £¬Ê¹¹¥»÷Õß½ÚÔìÖ¸±êÈËÔ±ÍÆËã»úȨÏÞ

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Iris-ID-IrisAccess-ICU-7000-2_´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

IrisIDµÄIrisAccess7000-2ÊÇLG³ö²úµÄºçĤ¼ø±ðϵͳ¡£ÓÉÓÚ¸Ãϵͳ´æÔÚ·ì϶ £¬¹¥»÷Õß¿Éͨ¹ý»ú¹Ø¶ñÒâpayloadʹϵͳִÐжñÒâºÅÁî £¬ÒÔ»ñÈ¡Ö÷»úȨÏÞ¡£

¸üй¦·ò£º

20220723



ÊÂÎñÃû³Æ£º

TCP_Îļþ²Ù×÷¹¥»÷_IncomCMS-2.0_ÎļþÉÏ´«[CVE-2020-29597][CNNVD-202012-431]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

IncomCMS2.0ÒÔ¼°Ö®Ç°µÄ°æ±¾´æÔÚÎļþÉÏ´«·ì϶ £¬¹¥»÷ÕßÄܹ»ÉÏ´«webshell»ñȡָ±êϵͳȨÏÞ

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_Xise-WebshellÖÎÀí¹¤¾ßÏνÓ_Webshell½Ó¼û

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö:

Á÷Á¿Öмì²âµ½XiseWebshellÖÎÀí¹¤¾ßÏνÓwebshellµÄ²Ù×÷ £¬¿ÉÄÜWebshellÒѱ»Ö²ÈëÔÚ½øÐÐÏνÓÐÐΪ¡£webshellÊÇwebÈëÇֵľ籾¹¥»÷¹¤¾ß¡£µ¥Ò»Ëµ £¬webshell¾ÍÊÇÒ»¸öÓÃasp»òphpµÈ±àдµÄľÂíºóÃÅ £¬¹¥»÷ÕßÔÚÈëÇÖÁËÒ»¸öÍøÕ¾ºó £¬Ê±Ê±½«ÕâЩasp»òphpµÈľÂíºóÃÅÎļþ¸éÖÃÔÚÍøÕ¾·þÎñÆ÷µÄwebĿ¼ÖÐ £¬ÓëÕý³£µÄÍøÒ³Îļþ»ìÔÚһ·¡£¶øºó¹¥»÷Õß¾ÍÄܹ»ÓÃwebµÄ·½Ê½ £¬Í¨¹ý¸ÃľÂíºóÃŽÚÔìÍøÕ¾·þÎñÆ÷ £¬Ô̺¬ÉÏ´«ÏÂÔØÎļþ¡¢²é¿´Êý¾Ý¿â¡¢Ö´ÐÐËÁÒⷨʽºÅÁîµÈ¡£webshellÄܹ»´©Ô½·À»ðǽ £¬ÓÉÓÚÓë±»½ÚÔìµÄ·þÎñÆ÷»òÔ¶³ÌÖ÷»ú»¥»»µÄÊý¾Ý¶¼ÊÇͨ¹ý80¶Ë¿Ú´«µÝµÄ £¬Òò¶ø²»»á±»·À»ðǽÀ¹½Ø¡£²¢ÇÒʹÓÃwebshellͨ³£²»»áÔÚϵͳÈÕÖ¾ÖÐÁôϼͼ £¬Ö»»áÔÚÍøÕ¾µÄwebÈÕÖ¾ÖÐÁôÏÂһЩÊý¾ÝÌá½»¼Í¼ £¬ÖÎÀíÔ±½ÏÄÑ¿´³öÈëÇÖºÛ¼£¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÆäËü×¢Èë_Jellyfin_SSRF_·þÎñ¶ËÒªÇóαÔì[CVE-2021-29490]

°²È«ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÃèÊö:

JellyfinÊÇÒ»¸öÃâ·ÑµÄÈí¼þýÌåϵͳ £¬10.7.3֮ǰµÄ°æ±¾´æÔÚSSRF·ì϶ £¬¹¥»÷ÕßÄܹ»»ú¹Ø¶ñÒâÒªÇó¸Ã·ì϶̽²âÄÚÍøÐÅÏ¢¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Èñ½ÝNBR-1300G·ÓÉÆ÷_CLIºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÉ豸ÔÚÀûÓÃÈñ½ÝNBR-1300G·ÓÉÆ÷Ô¶³ÌCLIºÅÁîÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÉ豸¡£ÔÚ_Èñ½ÝNBR-1300G·ÓÉÆ÷ÉÏ·¢ÏÖÁËÒ»¸öÎÊÌâ £¬¹¥»÷ÕßÄܹ»Ê¹ÓÃguestÕË»§Ö´ÐÐCLIºÅÁî¡£ÕâÔÊÐí»ñÈ¡ËùÓÐЧ»§ºÍÃÜÂë¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ClaimsIdentity-BinaryFormatterÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-JavaScriptSerializerÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-SharpSerializerBinaryÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-XamlÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-YamlDotNetÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_TextFormattingRunProperties-LosFormatterÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_TextFormattingRunProperties-NetDataContractSerializerÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_AxHostState-BinaryFormatterÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-FastJsonÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_ASP.NET_ObjectDataProvider-Json.NetÀûÓÃÁ´_ysoserial¹¤¾ßÀûÓÃ_ºÅÁîÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ysoserial.netÊÇÔÚ³£¼û.NET¿âÖз¢ÏÖµÄʵÓ÷¨Ê½ºÍÃæÏòÊôÐԵıà³Ì¡°Ó×¹¤¾ßÁ´¡±µÄ¼¯ÖÐ £¬Äܹ»ÔÚÊʵ±µÄǰÌáÏÂÀûÓÃ.NETÀûÓ÷¨Ê½Ö´Ðв»°²È«µÄ¶ÔÏó·´ÐòÁл¯¡£Ö÷Çý¶¯·¨Ê½½ÓÊÜÓû§Ö¸¶¨µÄºÅÁî²¢½«Æä°ü×°ÔÚÓû§Ö¸¶¨µÄÓ×¹¤¾ßÁ´ÖÐ £¬¶øºó½«ÕâЩ¶ÔÏóÐòÁл¯µ½³ß¶ÈÊä³ö¡£µ±Ààõè¾¶ÉÏÓµÓÐËùÐèÓ×¹¤¾ßµÄÀûÓ÷¨Ê½²»°²È«µØ·´ÐòÁл¯´ËÊý¾Ýʱ £¬½«×Ô¶¯Å²ÓÃÁ´²¢µ¼ÖºÅÁîÔÚÀûÓ÷¨Ê½Ö÷»úÉÏÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÆäËü¿ÉÒÉÐÐΪ_Shiro_Cookie³¤¶ÈÒì³£

°²È«ÀàÐÍ£º

¿ÉÒÉÐÐΪ

ÊÂÎñÃèÊö:

ApacheShiroĬÈÏʹÓÃÁËCookieRememberMeManager¡£Æä´¦ÖÃcookieµÄÁ÷³ÌÊÇ£ºµÃµ½rememberMeµÄcookieÖµ£»Base64½âÂ룻AES½âÃÜ£»·´ÐòÁл¯¡£È»¶øAESµÄÃÜÔ¿ÊÇÓ²±àÂëµÄ £¬¼´AES¼Ó½âÃܵÄÃÜÔ¿ÊÇдËÀÔÚ´úÂëÖеÄ £¬¹¥»÷ÕßÄܹ»»ú¹Ø¶ñÒâÊý¾ÝÔì³É·´ÐòÁл¯·ì϶ £¬cookie³¤¶ÈÒì³£ÌáÐÑ¿ÉÄÜΪ¹¥»÷Õß»ú¹ØµÄ¶ñÒâpayload¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÐÅϢй¶_¿ìÅÅCMS-1.2_Ãô¸ÐÐÅϢй¶

°²È«ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÃèÊö:

¿ìÅÅCMSÊÇ¿ªÔ´Ãâ·ÑµÄPHPÆóÒµÍøÕ¾Ôì×÷¡¢½¨Éè¡¢¿ª·¢¡¢ÓÅ»¯SEOÖÎÀíϵͳ¡  £¿ìÅÅCMS<=1.2°æ±¾»áĬÈÏ¿ªÆôÈÕÖ¾¼Í¼ £¬ÈÕÖ¾ÃûÎļþΪ¹¦·ò £¬ÈÕÖ¾¼Í¼ÖÐÔ̺¬ÖÎÀíÔ±cookieµÈÃô¸ÐÐÅÏ¢ £¬Òò¶ø¹¥»÷ÕßÄܹ»Í¨¹ý½Ó¼ûÈÕÖ¾¼Í¼ £¬ÕÒµ½ÖÎÀíÔ±cookieµÈÐÅÏ¢¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_°²È«Éó¼Æ_ÉÏ´«war°ü

°²È«ÀàÐÍ£º

°²È«Éó¼Æ

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅIPÖ÷»úÉÏ´«war°ü¡£war°üÊÇJavaWeb·¨Ê½´òµÄ°ü £¬Ò»¸öwar°üÄܹ»Àí½âΪÊÇÒ»¸öwebÏîÄ¿ £¬ÀïÃæÊÇÏîÖ÷ÕÅËùÓÐÆ÷²Ä¡£ÒÔTomcatΪÀý £¬½«War°ü¸éÖÃÔÚÆä\webapps\Ŀ¼Ï £¬¶øºóÆô¶¯Tomcat £¬Õâ¸ö°ü¾Í»á×Ô¶¯½âѹ £¬²¿Êð¡¢°ä²¼µ½web·þÎñÖС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_À¶ÁèOA_treexml.tmpl_Ô¶³Ì´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃÀ¶ÁèOAÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ¡£Àö½­ÊÐÀ¶ÁèÈí¼þ¹É·ÝÓÐÏÞ¹«Ë¾Êý×ÖOA(EKP)´æÔÚÔ¶³Ì´úÂëÖ´Ðзì϶¡£¹¥»÷Õß¿Éͨ¹ýtreexml.tmpl £¬ÔÚÖ¸±ê·þÎñÆ÷ÉÏÖ´ÐÐËÁÒâ´úÂë¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_Blueimp-jQuery-File-Upload_ÎļþÉÏ´«[CVE-2018-9206][CNNVD-201810-561]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

Blueimp-jQuery-File-UploadÊÇÒ»¸öÎļþÉÏ´«Ó×¹¤¾ß £¬Ô̺¬¶à¸öÎļþÑ¡Ôñ £¬ÍÏ·ÅÖ§³Ö £¬½ø¶ÈÌõ £¬ÑéÖ¤ºÍÔ¤ÀÀͼÏñ £¬jQueryµÄÒôƵºÍÊÓÆµ¡£Ö§³Ö¿çÓò¡¢·Ö¿éºÍ¿É¸´Ô­ÎļþÉÏ´«ÒÔ¼°¿Í»§¶ËͼÏñ´óÓ×µ÷Õû¡£ºÏÓÃÓÚÈκηþÎñÆ÷¶Ëƽ̨ £¬Ö§³Ö³ß¶ÈHTML±íµ¥ÎļþÉÏ´«£¨PHP £¬Python £¬RubyonRails £¬Java £¬Node.js £¬GoµÈ£©¡£ÓÉÓÚÆäphp°æ±¾´æÔÚ·ì϶ £¬¿Éµ¼ÖÂËÁÒâÎļþÉÏ´«¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_WordPress-Simple-Ads-Manager_ÎļþÉÏ´«[CVE-2015-2825][CNNVD-201504-410]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

WordPressÊÇWordPressÈí¼þ»ù½ð»áµÄÒ»Ì×ʹÓÃPHP˵»°¿ª·¢µÄ²©¿Íƽ̨ £¬¸Ãƽ̨֧³ÖÔÚPHPºÍMySQLµÄ·þÎñÆ÷ÉϼÜÉèÓ×ÎÒ²©¿ÍÍøÕ¾¡£WordPressSimpleAdsManagerÊÇÒ»¸öworkpressµÄ¸æ°×ÖÎÀí²å¼þ¡£WordPressSimpleAdsManagerµÄsam-ajax-admin.phpÎļþÖдæÔÚËÁÒâÎļþÉÏ´«·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþ £¬²¢ÒÔWEBȨÏÞÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Net.FliterÄÚ´æÂí×¢Èë_´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´ipÔÚÀûÓÃNetFrameworkÉϵÄFilter¹ýÂËÆ÷ £¬ÉÏ´«FliterÄÚ´æÂí £¬½ø¶ø½øÐиüÉî¿ÌµÄ¹¥»÷¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ľÂíºóÃÅ_IcedID.BCModule_ÏνÓ

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö:

¼ì²âµ½IcedIDµÄBCÄ  £¿éÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíIcedID¡£IcedIDÊÇ×îÔçÔÚ2017Äê±»Åû¶µÄÄ  £¿é»¯ÒøÐÐľÂí £¬Ò²ÊǽüÄêÀ´×îÊ¢ÐеĶñÒâÈí¼þ¼Ò×åÖ®Ò»¡£IcedIDÖØÒªÕë¶Ô½ðÈÚÐÐÒµÌáÒé¹¥»÷ £¬»¹»á³äÈÎÆäËû¶ñÒâÈí¼þ¼Ò×壨ÈçVatet¡¢Egregor¡¢REvil£©µÄDropper¡£IcedIDÔ̺¬Ò»¸öBCÄ  £¿é £¬Äܹ»Ö´Ðй¥»÷ÕßµÄÖ¸Áî £¬ÈçÔËÐÐVNCºÍSOCKSÄ  £¿é¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTPS_ľÂíºóÃÅ_Covenant_ÏνÓC2·þÎñÆ÷

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö:

CovenantÊÇÒ»¸ö.NET¿ª·¢µÄC2(commandandcontrol)¿ò¼Ü £¬Ê¹ÓÃ.NETCoreµÄ¿ª·¢»·¾³ £¬²»½öÖ§³ÖLinux £¬MacOSºÍWindows £¬»¹Ö§³ÖdockerÈÝÆ÷¡£CovenantÖ§³Ö¶¯Ì¬±àÒë £¬¿ÉÄܽ«ÊäÈëµÄC#´úÂëÉÏ´«ÖÁC2Server £¬»ñµÃ±àÒëºóµÄÎļþ²¢Ê¹ÓÃAssembly.Load()´ÓÄÚ´æ½øÐмÓÔØ¡£¸ÃÊÂÎñÅú×¢ £¬CovenantµÄÌìÉúÎïGruntsÔÚÀûÓÃHTTPSºÍ̸ÓëC2·þÎñÆ÷³ÉÁ¢ÏνÓ¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_SAP_NETWEAVER_´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

SAPNetWeaverÊÇ»ùÓÚרҵ³ß¶ÈµÄ¼¯³É»¯ÀûÓÃÆ½Ì¨ £¬¿ÉÄÜ´ó·ù¶È½µµÍϵͳÕûºÏµÄ¸´ÔÓÐÔ¡£Æä×é¼þÔ̺¬ÃÅ»§¡¢ÀûÓ÷þÎñÆ÷¡¢ÉÌÎñÖÇÄܽâ¾ö¹æ»®ÒÔ¼°ÏµÍ³ÕûºÏºÍÊý¾ÝÕûºÏ¼¼Êõ £¬SAPNetWeaver×é¼þ´æÔÚÔ¶³ÌºÅÁîÖ´Ðзì϶¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Spring_Shell_´úÂëÖ´ÐÐ[CVE-2022-22965][CNNVD-202203-2642]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

SpringÊÇĿǰȫÇò×îÊÜÓ­½ÓµÄJavaÇáÁ¿¼¶¿ªÔ´¿ò¼Ü¡£¶ÔÓÚCVE-2022-22965·ì϶ £¬¹¥»÷Õ߿ɽáºÏJDK9¼°ÒÔÉϰ汾һ¸öеÄÊôÐÔ £¬³É¹¦Èƹýº¹Çà·ì϶CVE-2010-1622½¨¸´²¹¶¡ £¬Í¬Ê±½áºÏTomcatÈÝÆ÷µÄһЩ²Ù×÷ÊôÐÔ £¬¿ÉʵÏÖ¶ñÒâ´úÂëÖ´ÐС£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_WordPress_wpDiscuz_7.0.4_ËÁÒâÎļþÉÏ´«[CVE-2020-24186][CNNVD-202008-1145]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

WordPressµÄgVectorswpDiscuz²å¼þ7.0ÖÁ7.0.4°æ±¾ÖдæÔÚÔ¶³Ì´úÂëÖ´Ðзì϶ £¬¹¥»÷Õß¿ÉʹÓÃδ¾­ÑéÖ¤µÄÓû§Í¨¹ýwmuUploadFilesAjax²Ù×÷ÉÏ´«ÈκÎÀàÐ͵ÄÎļþ £¬Ô̺¬PHPÎļþ,´Ó¶øÊµÏÖÔ¶³Ì´úÂëÖ´ÐÐ

¸üй¦·ò£º

20220723



ÊÂÎñÃû³Æ£º

HTTP_ÉèÖÃȱµã_Confluence_server_Ó²±àÂëÈÆ¹ý[CVE-2022-26138]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

AtlassianConfluenceServerÊǰĴóÀûÑÇAtlassian¹«Ë¾µÄÒ»Ì×ÓµÓÐÆóҵ֪ʶÖÎÀíÖ°ÄÜ £¬²¢Ö§³ÖÓÃÓÚ¹¹½¨ÆóÒµWiKiµÄЭͬÈí¼þµÄ·þÎñÆ÷°æ±¾.ConfluenceServerµÄÀ©´ó·¨Ê½QuestionsforConfluenceÔÚijЩ°æ±¾´æÔÚÒ»¸öĬÈϵÄÓ²±àÂëÓû§ £¬¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚδÊÚȨµÄÇé¿öϵǼconfluence²¢½Ó¼ûconfluence-users×éÖеÄÓû§Äܹ»½Ó¼ûµÄËùÓÐÄÚÈÝ¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_Zoomla_ÖðÀËCMSϵͳ_ËÁÒâÎļþÏÂÔØ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ZoomlaÖðÀËCMSÈí¼þÓÉÉϺ£ÖðÒ»Èí¼þ¿Æ¼¼ÓÐÏÞ¹«Ë¾¡¢½­Î÷ÖðÀËÈí¼þ¿Æ¼¼ÓÐÏÞ¹«Ë¾½áºÏ¿ª·¢µÄÍøÕ¾ÖÎÀíϵͳ¡£ÒòϵͳÖдæÔÚ·ì϶ £¬¹¥»÷Õß¿ÉÀûÓø÷ì϶ÏÂÔØËÁÒâÎļþ¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Net.HttpListenerÄÚ´æÂí×¢Èë_´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´ipÔÚÀûÓÃNetFrameworkÉϵÄHttpListener¼àÌýÆ÷ £¬ÉÏ´«HttpListenerÄÚ´æÂí £¬½ø¶ø½øÐиüÉî¿ÌµÄ¹¥»÷¡£

¸üй¦·ò£º

20220723



ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_Wordpress_WP_Property_ÎļþÉÏ´«

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

WordPressÊÇWordPressÈí¼þ»ù½ð»áµÄÒ»Ì×ʹÓÃPHP˵»°¿ª·¢µÄ²©¿Íƽ̨¡£¸Ãƽ̨֧³ÖÔÚPHPºÍMySQLµÄ·þÎñÆ÷ÉϼÜÉèÓ×ÎÒ²©¿ÍÍøÕ¾¡£WordPressµÄWP-Property²å¼þ£¨1.35.0°æ±¾£©ÖдæÔÚËÁÒâÎļþÉÏ´«·ì϶ £¬¸Ã·ì϶ԴÓÚÀûÓ÷¨Ê½¶ÔÓû§ÌṩµÄÊäÈëδ¾­³ä·Ö¹ýÂË¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚweb·þÎñÆ÷¹ý³Ì¸ßµÍÎÄÖÐÉÏ´«²¢ÔËÐÐËÁÒâPHP´úÂë £¬Õâ¿ÉÄÜÓÐÀûÓÚδÊÚȨ½Ó¼û»òȨÏÞÌáÉý £¬Ò²¿ÉÄÜÖ´ÐÐÆäËûµÄ¹¥»÷¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_MessageSolution_·ÇÊÚȨ½Ó¼û/ȨÏÞÈÆ¹ý[CNVD-2021-10543]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

MessageSolutionÆóÒµÓʼþ¹éµµÖÎÀíϵͳEEAÊDZ±¾©Ò×Ѷ˼´ï¿Æ¼¼¿ª·¢ÓÐÏÞ¹«Ë¾¿ª·¢µÄÒ»¿îÓʼþ¹éµµÏµÍ³ £¬¸Ãϵͳ´æÔÚͨÓÃWEBÐÅϢй© £¬Ð¹Â¶Windows·þÎñÆ÷administratorhashÓëwebÕ˺ÅÃÜÂë¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ľÂí_C3Pool_Xmrig_SetupScript_ÏÂÔØ

°²È«ÀàÐÍ£º

È䳿²¡¶¾

ÊÂÎñÃèÊö:

¼ì²âµ½ÏÂÔØC3PoolÍÚ¿ó¾ç±¾µÄÐÐΪ¡£Ô´IP¿ÉÄܱ»Ö²ÈëÁ˶ñÒâľÂíºóÃÅ £¬»òÕßÔ´IP´æÄ³¸ö·ì϶ £¬±»¹¥»÷´¥·¢·ì϶³É¹¦ £¬È¥ÏÂÔØC3PoolÍÚ¿ó¾ç±¾¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_˼¸£µÏµï±¤»ú_·ÇÊÚȨ½Ó¼û/ȨÏÞÈÆ¹ý

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

˼¸£µÏµï±¤»úÉ豸ÊÇÓÃÓÚ¶ÔÔËάÈËÔ±½øÐм¯ÖÐÖÎÀí¡¢¶ÔÔËά²Ù×÷½øÐм¯ÖÐÉ󼯵ݲȫÉó¼ÆÉ豸¡£Ë¼¸£µÏµï±¤»ú£¨ÊÜÓ°Ïì°æ±¾£ºLogBase-B798¡¢bh-x64-v7.0.13¡¢bh-x64-v7.0.15£©´æÔÚËÁÒâÓû§µÇ¼·ì϶ £¬¶ñÒâ¹¥»÷ÕßÄܹ»Èƹýµï±¤»úµÄÃÜÂëµÇ¼ÑéÖ¤»úÔì £¬ÒÔËÁÒâÓû§Éí·ÝÇáÒ׵Ǽµï±¤»úWebÖÎÀí½çÃæ £¬²¢Äܹ»Õý³£µÄʹÓÃÕË»§È¨ÏÞÈ¥²Ù×÷¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_ÌáȨ¹¥»÷_Net.RouteÄÚ´æÂí×¢Èë_´úÂëÖ´ÐÐ

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´ipÔÚÀûÓÃNetFrameworkÉϵÄRoute·ÓÉÖÎÀíÆ÷ £¬ÉÏ´«RouteÄÚ´æÂí £¬½ø¶ø½øÐиüÉî¿ÌµÄ¹¥»÷¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

TCP_×¢Èë¹¥»÷_WebLogic_WsrmPayloadContext_XXE×¢Èë[CVE-2019-2649][CNNVD-201904-726]

°²È«ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃHTTP_WebLogic_WsrmPayloadContext_XXE×¢Èë·ì϶¶ÔÖ÷ÕÅÖ÷»ú½øÐй¥»÷µÄÐÐΪ¡£HTTP_WebLogic_WsrmPayloadContext_XXE×¢Èë·ì϶ £¬¹¥»÷ÕßÄܹ»ÔÚδÊÚȨµÄÇé¿öϽ«payload·â×°ÔÚT3ºÍ̸ÖÐ £¬Í¨¹ý¶ÔT3ºÍ̸ÖеÄpayload½øÐз´ÐòÁл¯ £¬´Ó¶øÊµÏÖ¶Ô´æÔÚ·ì϶µÄWebLogic×é¼þ½øÐÐÔ¶³ÌBlindXXE¹¥»÷¡£

¸üй¦·ò£º

20220723



ÊÂÎñÃû³Æ£º

HTTP_ÌáȨ¹¥»÷_Apache-Spark-doAS_ºÅÁî×¢Èë[CVE-2022-33891]

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

ApacheSparkUIͨ¹ýÅäÖÃÑ¡Ïîspark.acls.enableÉí·ÝÑéÖ¤¹ýÂËÆ÷ £¬²é³­Óû§ÊÇ·ñÓµÓв鿴»òÅú¸ÄÀûÓá£ÈôÊÇÆôÓÃÁËACL £¬ÔòHttpSecurityFilterÖеĴúÂëÔÊÐíijÈËͨ¹ýÌṩËÁÒâÓû§ÃûÀ´Ö´ÐзÂÕÕ¡£¶ñÒâÓû§¿ÉÄÜÈÆ¹ýȨÏ޲鳭ְÄÜ £¬ÊäÈë¹¹½¨Ò»¸öUnixshellºÅÁî £¬²¢ÇÒÖ´ÐÐËü¡£½«µ¼ÖÂÖ´ÐÐËÁÒâshellºÅÁî¡£

¸üй¦·ò£º

20220723


Åú¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

TCP_ºóÃÅ_Linux.DDoS.Gafgyt_½ÚÔìºÅÁî

°²È«ÀàÐÍ£º

ÆäËûÊÂÎñ

ÊÂÎñÃèÊö:

¼ì²âµ½Gafgyt·þÎñÆ÷ÊÔͼ·¢ËͺÅÁî¸øGafgyt £¬Ö÷ÕÅIPÖ÷»ú±»Ö²ÈëÁËGafgyt¡£DDoS.GafgytÊÇÒ»¸öÀàLinuxƽ̨ϵĽ©Ê¬ÍøÂç £¬ÖØÒªÖ°ÄÜÊǶÔÖ¸¶¨Ö¸±ê»úеÌáÒéDDoS¹¥»÷¡£¶ÔÖ¸¶¨Ö¸±êÖ÷»úÌáÒéDDoS¹¥»÷¡£

¸üй¦·ò£º

20220723


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_WebShellÉÏ´«_Godzilla¸ç˹À­_php_base64

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅIPÖ÷»úÉÏ´«¸ç˹À­webshellľÂí¡£¸ç˹À­ºÍ±ùЫһÑù £¬ÊÇÒ»ÖÖ׳´óµÄwebshellÖÎÀí¹¤¾ß £¬Ñ¡È¡¼ÓÃÜÁ÷Á¿½øÐÐͨѶ¡£³£±»ºÚ¿ÍÓÃÀ´Î¬³ÖȨÏÞ £¬²¢½øÐÐÏÂÒ»²½µÄÌáȨ»òÒÆ¶¯¡£

¸üй¦·ò£º

20220723


0


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_WebShellÉÏ´«_Godzilla¸ç˹À­_php_raw

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅIPÖ÷»úÉÏ´«¸ç˹À­webshellľÂí¡£¸ç˹À­ºÍ±ùЫһÑù £¬ÊÇÒ»ÖÖ׳´óµÄwebshellÖÎÀí¹¤¾ß £¬Ñ¡È¡¼ÓÃÜÁ÷Á¿½øÐÐͨѶ¡£³£±»ºÚ¿ÍÓÃÀ´Î¬³ÖȨÏÞ £¬²¢½øÐÐÏÂÒ»²½µÄÌáȨ»òÒÆ¶¯¡£

¸üй¦·ò£º

20220723


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_WebShellÉÏ´«_Godzilla¸ç˹À­_asp_base64

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´IPÖ÷»úÔÚÏòÖ÷ÕÅIPÖ÷»úÉÏ´«¸ç˹À­webshellľÂí¡£¸ç˹À­ºÍ±ùЫһÑù £¬ÊÇÒ»ÖÖ׳´óµÄwebshellÖÎÀí¹¤¾ß £¬Ñ¡È¡¼ÓÃÜÁ÷Á¿½øÐÐͨѶ¡£³£±»ºÚ¿ÍÓÃÀ´Î¬³ÖȨÏÞ £¬²¢½øÐÐÏÂÒ»²½µÄÌáȨ»òÒÆ¶¯¡£

¸üй¦·ò£º

20220723

 

ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_±ùЫ3.0ÏνÓ_»ù´¡ÊÂÎñ2

°²È«ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö:

±ùЫ3.0ÊÇÒ»¿î׳´óµÄwebshellÖÎÀí¹¤¾ß¡£¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓñùЫ3.0ÏνÓÖ÷ÕÅIPÖ÷»úµÄÐÐΪ

¸üй¦·ò£º

20220723

 

ÊÂÎñÃû³Æ£º

HTTP_Îļþ²Ù×÷¹¥»÷_¿ÉÒÉ¿ÉÖ´ÐÐÎļþÉÏ´«

°²È«ÀàÐÍ£º

°²È«·ì϶

ÊÂÎñÃèÊö:

¼ì²âµ½Ô´ipÖ÷»ú´æÔÚÉÏ´«¿ÉÒÉwebshellµ½Ö÷ÕÅipÖ÷»úµÄÐÐΪ

¸üй¦·ò£º

20220723