WordPress CMS δÐÞ¸´Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2018-06-27

Îó²î±àºÅºÍ¼¶±ð


CVE-2018-12895  ¸ßΣ  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì¹æÄ£


¸ÃÎó²îÓ°ÏìËùÓÐWordPress CMS°æ±¾£¬£¬£¬£¬£¬°üÀ¨×îа汾v4.9.6¡£¡£¡£¡£¡£¡£


Îó²î¸ÅÊö


ʹÓôËÎó²îʹ¹¥»÷ÕßÄܹ»É¾³ýWordPress×°ÖõÄÈκÎÎļþ£¨+ PHPЧÀÍÆ÷ÉϵÄÈÎºÎÆäËûÎļþ£¬£¬£¬£¬£¬PHPÀú³ÌÓû§¾ßÓÐÊʵ±µÄɾ³ýȨÏÞ£©¡£¡£¡£¡£¡£¡£ ³ýÁËɾ³ýÕû¸öWordPress×°ÖõĿÉÄÜÐÔ£¨ÈôÊÇûÓÐÄ¿½ñ±¸·Ý¿ÉÓûᵼÖÂÔÖÄÑÐÔЧ¹û£©£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓÃí§ÒâÎļþɾ³ý¹¦Ð§ÈƹýһЩÇå¾²²½·¥²¢ÔÚWebЧÀÍÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ ¸üÈ·ÇеØËµ£¬£¬£¬£¬£¬¿ÉÒÔɾ³ýÒÔÏÂÎļþ£º


.htaccess£º ͨ³££¬£¬£¬£¬£¬É¾³ý´ËÎļþ²»»áÓÐÈκÎÇ徲Ч¹û¡£¡£¡£¡£¡£¡£ ¿ÉÊÇ£¬£¬£¬£¬£¬ÔÚijЩÇéÐÎÏ£¬£¬£¬£¬£¬ .htaccess Îļþ°üÀ¨ÓëÇå¾²Ïà¹ØµÄÔ¼Êø£¨ÀýÈ磬£¬£¬£¬£¬¶ÔijЩÎļþ¼ÐµÄ»á¼ûÏÞÖÆ£©¡£¡£¡£¡£¡£¡£ ɾ³ý´ËÎļþ½«»á½ûÓÃÕâЩÇå¾²ÏÞÖÆ¡£¡£¡£¡£¡£¡£


index.phpÎļþ£º ͨ³£ÇéÐÎÏ£¬£¬£¬£¬£¬½«¿ÕµÄ index.php Îļþ°²Åŵ½Ä¿Â¼ÖУ¬£¬£¬£¬£¬ÒÔ±ÜÃâWebЧÀÍÆ÷ÎÞ·¨Ö´ÐеÄÇéÐÎϵÄĿ¼Áбí¡£¡£¡£¡£¡£¡£ ɾ³ýÕâЩÎļþ½«Îª¹¥»÷ÕßÌṩһ·ÝÁбí£¬£¬£¬£¬£¬ÁгöÊܴ˲½·¥±£»£»£»£»£»£»£»¤µÄĿ¼ÖеÄËùÓÐÎļþ¡£¡£¡£¡£¡£¡£


wp-config.php£º ɾ³ýÕâ¸öWordPress×°ÖÃÎļþ»áÔÚÏ´λá¼û¸ÃÍøÕ¾Ê±´¥·¢WordPress×°ÖÃÀú³Ì¡£¡£¡£¡£¡£¡£ ÕâÊÇÓÉÓÚ wp-config.php °üÀ¨Êý¾Ý¿âƾ֤£¬£¬£¬£¬£¬ÈôÊÇûÓÐËü£¬£¬£¬£¬£¬WordPressµÄÐÐΪ¾ÍËÆºõËüÉÐδװÖᣡ£¡£¡£¡£¡£ ¹¥»÷Õß¿ÉÒÔɾ³ý¸ÃÎļþ£¬£¬£¬£¬£¬Ê¹ÓÃÖÎÀíÔ±ÕÊ»§Ñ¡ÔñµÄƾ֤¾ÙÐÐ×°ÖÃÀú³Ì£¬£¬£¬£¬£¬×îºóÔÚЧÀÍÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


Îó²îÑéÖ¤ÊÓÆµ


http://player.youku.com/embed/XMzY4OTIzNDc4NA==


ÐÞ¸´½¨Òé


Îó²î·¢Ã÷Õߣ¬£¬£¬£¬£¬Ðû²¼ÁËÒ»¸öÔÝʱÐÞ²¹ÒªÁ죺


²Î¿¼https://blog.ripstech.com/2018/wordpress-file-delete-to-code-execution/
Temporary Hotfix

 

ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾

 

ʱ¼äÏß


2017Äê11ÔÂ20ÈÕÔÚHackeroneÉÏÏòWordPressÇå¾²ÍŶӱ¨¸æÎó²î¡£¡£¡£¡£¡£¡£
2017Äê11ÔÂ22ÈÕÕâ¸öÎó²î±»Çå¾²ÍŶӷÖÀàºÍÑéÖ¤¡£¡£¡£¡£¡£¡£
2017Äê12ÔÂ12ÈÕѯÎÊÏ£ÍûÇéÐΡ£¡£¡£¡£¡£¡£
2017Äê12ÔÂ18ÈÕWordpressÕýÔÚ¿ª·¢Ò»¸ö²¹¶¡³ÌÐò¡£¡£¡£¡£¡£¡£ ÒªÇóÐû²¼ÈÕÆÚ¡£¡£¡£¡£¡£¡£ ûÓз´Ó¦¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ09ÈÕÒªÇóÐû²¼ÈÕÆÚ¡£¡£¡£¡£¡£¡£Ã»Óз´Ó¦¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ20ÈÕÓÉÓÚÎÊÌâµÄÑÏÖØÐÔºÍȱ·¦Ïàͬ£¬£¬£¬£¬£¬±»ÒªÇó¶ÔHackerone¾ÙÐе÷½â¡£¡£¡£¡£¡£¡£
2018Äê01ÔÂ24ÈÕWordPressÇå¾²ÍŶÓÔ¤¼ÆÐèÒª6¸öÔµÄʱ¼ä²Å»ªÐÞ¸´¡£¡£¡£¡£¡£¡£
2018Äê05ÔÂ24ÈÕѯÎÊÓйØÎÊÌâµÄÏ£ÍûºÍ/»òÍýÏ룬£¬£¬£¬£¬²¢ÌáÐÑÎÒÃǾ¡¿ìÐû²¼¡£¡£¡£¡£¡£¡£Ã»Óз´Ó¦¡£¡£¡£¡£¡£¡£
2018Äê05ÔÂ24ÈÕ½«ÍÆÌØDM·¢Ë͸øÇå¾²ÍŶÓ£¬£¬£¬£¬£¬ÒÔÈ·±£ËûÃDz»»áºöÂÔHackeroneÉϵÄÐÂÎÅ¡£¡£¡£¡£¡£¡£
2018Äê06ÔÂ26ÈÕ±¨¸æ¿¢Êºó7¸öÔÂÒÔÉÏÈÔδ½â¾öÎÊÌâ¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://blog.ripstech.com/2018/wordpress-file-delete-to-code-execution/
https://nvd.nist.gov/vuln/detail/CVE-2018-12895