2020-05-05
Ðû²¼Ê±¼ä 2020-05-06ÐÂÔöÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
TCP_Oracle_Coherence_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2915] |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle CoherenceÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2915£©£¬£¬£¬£¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£ Îó²î±£´æµÄCoherence°æ±¾: Oracle Coherence 3.7.1.0£¬£¬£¬£¬£¬£¬ Oracle Coherence 12.1.3.0.0£¬£¬£¬£¬£¬£¬ Oracle Coherence 12.2.1.3.0£¬£¬£¬£¬£¬£¬ Oracle Coherence 12.2.1.4.0¡£¡£¡£ ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬£¬£¬£¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
|
ÊÂÎñÃû³Æ£º |
TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2963] |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2963£©£¬£¬£¬£¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£ Îó²î±£´æµÄweblogic°æ±¾: WebLogic Server 10.3.6.0.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.1.3.0.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.2.1.3.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.2.1.4.0¡£¡£¡£ ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬£¬£¬£¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
|
ÊÂÎñÃû³Æ£º |
TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2883] |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2883£©£¬£¬£¬£¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£ Îó²î±£´æµÄweblogic°æ±¾: WebLogic Server 10.3.6.0.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.1.3.0.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.2.1.3.0£¬£¬£¬£¬£¬£¬ WebLogic Server 12.2.1.4.0¡£¡£¡£ ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬£¬£¬£¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
|
ÊÂÎñÃû³Æ£º |
TCP_WebLogic_XXE_í§ÒâÎļþ¶ÁÈ¡Îó²î[CVE-2020-2949] |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃWebLogic XXEí§ÒâÎļþ¶ÁÈ¡Îó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
|
ÊÂÎñÃû³Æ£º |
TCP_Ô¶³Ì¿ØÖÆÈí¼þ_ÏòÈÕ¿û_V9_½¨Éè¿ØÖÆÅþÁ¬ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Éó¼Æ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½ÄúµÄÍøÂçÖÐÓÐһ̨Ö÷»úÕýÔÚÊÔͼʹÓÃÏòÈÕ¿ûÅþÁ¬¶Ô¶Ë×°±¸¡£¡£¡£ ÏòÈÕ¿ûÔ¶³Ì¿ØÖÆÊÇÒ»¿îÃæÏòÆóÒµºÍרҵְԱµÄÔ¶³ÌPCÖÎÀíºÍ¿ØÖƵÄЧÀÍÈí¼þ¡£¡£¡£ÄúÔÚÈκοÉÁ¬È뻥ÁªÍøµÄËùÔÚ£¬£¬£¬£¬£¬£¬¶¼¿ÉÒÔÇáËÉ»á¼ûºÍ¿ØÖÆ×°ÖÃÁËÏòÈÕ¿ûÔ¶³Ì¿ØÖƿͻ§¶ËµÄÔ¶³ÌÖ÷»ú£¬£¬£¬£¬£¬£¬Õû¸öÀú³ÌÍêÈ«¿ÉÒÔͨ¹ýä¯ÀÀÆ÷¾ÙÐУ¬£¬£¬£¬£¬£¬ÎÞÐèÔÙ×°ÖÃÈí¼þ¡£¡£¡£ÏòÈÕ¿ûÔ¶³Ì¿ØÖÆÓµÓÐÎåÃë¿ìËÙ¶øÓÖÇ¿¾¢µÄÄÚÍø´©Í¸¹¦Á¦£¬£¬£¬£¬£¬£¬ÈÚºÏÁË΢ÈíRDPÔ¶³Ì×ÀÃæ(3389)£¬£¬£¬£¬£¬£¬Óû§¿ÉÒÔÇáËÉÔÚÏòÈÕ¿ûÔ¶³Ì×ÀÃæÐæÅºÍ΢ÈíRDPÐÒéÖÐ×ÔÓÉÇл»£¬£¬£¬£¬£¬£¬ÏíÊÜ×î¼ÑµÄÔ¶³Ì×ÀÃæÌåÑé¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
|
ÊÂÎñÃû³Æ£º |
ľÂíºóÃÅ |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Éó¼Æ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½LeetHozerÊÔͼÅþÁ¬C&CЧÀÍÆ÷¡£¡£¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçLeetHozer¡£¡£¡£ LeetHozerÊÇÒ»¸ö½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬Ö÷ÒªÊǶÔÖ¸¶¨Ä¿µÄÌᳫDDoS¹¥»÷¡£¡£¡£Í¨¹ý9530¶Ë¿ÚÎó²îÒÔ¼°Telnet Èõ¿ÚÁîÈö²¥×ÔÉí¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200505 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º
TCP_RDPÔ¶³Ì×ÀÃæµÇ¼_»á»°ÅþÁ¬
Çå¾²ÀàÐÍ£º
Çå¾²Éó¼Æ
ÊÂÎñÐÎò£º
ÕâÊÇÒ»Ìõ»ù´¡ÊÂÎñ£¬£¬£¬£¬£¬£¬µ¥¶ÀÉϱ¨ÎÞÒâÒå¡£¡£¡£
¸üÐÂʱ¼ä£º
20200505
ÊÂÎñÃû³Æ£º
HTTP_ľÂíºóÃÅ_webshell_china_chopper_aspx¿ØÖÆÏÂÁî
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¸ÃÊÂÎñÅú×¢Ô´IPµØµãÖ÷»úÉϵÄÖйú²Ëµ¶¿Í»§¹æÔòÔÚÏòÄ¿µÄIPµØµãÖ÷»úÉϵÄwebshellЧÀÍÆ÷¶Ë·¢³ö¿ØÖÆÏÂÁî¡£¡£¡£
webshellÊÇwebÈëÇֵľ籾¹¥»÷¹¤¾ß¡£¡£¡£¼òÆÓ˵£¬£¬£¬£¬£¬£¬webshell¾ÍÊÇÒ»¸öÓÃasp»òphpµÈ±àдµÄľÂíºóÃÅ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚÈëÇÖÁËÒ»¸öÍøÕ¾ºó£¬£¬£¬£¬£¬£¬¾³£½«ÕâЩasp»òphpµÈľÂíºóÃÅÎļþ°²ÅÅÔÚÍøÕ¾Ð§ÀÍÆ÷µÄwebĿ¼ÖУ¬£¬£¬£¬£¬£¬ÓëÕý³£µÄÍøÒ³Îļþ»ìÔÚÒ»Æð¡£¡£¡£È»ºó¹¥»÷Õ߾ͿÉÒÔÓÃwebµÄ·½·¨£¬£¬£¬£¬£¬£¬Í¨¹ý¸ÃľÂíºóÃÅ¿ØÖÆÍøÕ¾Ð§ÀÍÆ÷£¬£¬£¬£¬£¬£¬°üÀ¨ÉÏ´«ÏÂÔØÎļþ¡¢Éó²éÊý¾Ý¿â¡¢Ö´ÐÐí§Òâ³ÌÐòÏÂÁîµÈ¡£¡£¡£webshell¿ÉÒÔ´©Ô½·À»ðǽ£¬£¬£¬£¬£¬£¬ÓÉÓÚÓë±»¿ØÖƵÄЧÀÍÆ÷»òÔ¶³ÌÖ÷»ú½»Á÷µÄÊý¾Ý¶¼ÊÇͨ¹ý80¶Ë¿Úת´ïµÄ£¬£¬£¬£¬£¬£¬Òò´Ë²»»á±»·À»ðǽ×èµ²¡£¡£¡£²¢ÇÒʹÓÃwebshellÒ»Ñùƽ³£²»»áÔÚϵͳÈÕÖ¾ÖÐÁôϼͼ£¬£¬£¬£¬£¬£¬Ö»»áÔÚÍøÕ¾µÄwebÈÕÖ¾ÖÐÁôÏÂһЩÊý¾ÝÌá½»¼Í¼£¬£¬£¬£¬£¬£¬ÖÎÀíÔ±½ÏÄÑ¿´ÊÕÖ§ÇÖºÛ¼£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200505


¾©¹«Íø°²±¸11010802024551ºÅ