2020-07-21
Ðû²¼Ê±¼ä 2020-07-22ÐÂÔöÊÂÎñ
|
ÊÂÎñÃû³Æ£º |
HTTP_Laravel_Framework_·´ÐòÁл¯Îó²î[CVE-2019-9081] |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ê¹ÓÃLaravel Framework ·´ÐòÁл¯Îó²î¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£Laravel FrameworkÊÇTaylor OtwellÈí¼þ¿ª·¢Õß¿ª·¢µÄÒ»¿î»ùÓÚPHPµÄWebÓ¦ÓóÌÐò¿ª·¢¿ò¼Ü¡£¡£¡£¡£IlluminateÊÇÆäÖеÄÒ»¸ö×é¼þ¡£¡£¡£¡£Laravel Framework 5.7.x°æ±¾ÖеÄIlluminate×é¼þ±£´æ·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿ÉʹÓøÃÎó²îÖ´ÐдúÂë¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
|
ÊÂÎñÃû³Æ£º |
DNS_Çå¾²Îó²î_Microsoft_DNS_Server_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-1350] |
|
Çå¾²ÀàÐÍ£º |
»º³åÒç³ö |
|
ÊÂÎñÐÎò£º |
Windows DNS Server ÊÇ Windows Server ЧÀÍÆ÷ÉÏÒ»ÏîÖ÷Òª¹¦Ð§×é¼þ£¬£¬£¬£¬£¬£¬£¬£¬ÈÏÕæÓòÄÚÖ÷»úµÄËùÓÐDNSÏà¹ØÐ§À͵ĵ÷ÀíºÍ´¦Öóͷ£¡£¡£¡£¡£Windows DNS ServerÎÞ·¨×¼È·´¦Öóͷ£SIGÇëÇ󣬣¬£¬£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õ߿ɲ»¾ÓÉÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬ÏòÊÜÓ°ÏìµÄЧÀÍÆ÷·¢ËÍÌØÖÆµÄÇëÇó°ü£¬£¬£¬£¬£¬£¬£¬£¬×îÖÕ´¥·¢¸ÃÎó²î¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚÊÜÓ°ÏìµÄϵͳÉÏÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬£¬£¬£¬£¬½ø¶ø¿ØÖÆÆäËûÏàÁ¬Í¨µÄЧÀÍÔì³ÉÑÏÖØÎ£º¦¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
|
ÊÂÎñÃû³Æ£º |
TCP_Fastjson_JSON·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
FastjsonÊÇÒ»¸öJava¿â£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSONÃûÌ㬣¬£¬£¬£¬£¬£¬£¬fastjson±£´æÔ¶³Ì´úÂëÖ´ÐиßΣÇå¾²Îó²î¡£¡£¡£¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸öÈ«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬£¬µ±³ÌÐòÖ´ÐÐJSON·´ÐòÁл¯µÄÀú³ÌÖÐÖ´ÐжñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
|
ÊÂÎñÃû³Æ£º |
HTTP_Çå¾²Îó²î_Jenkins_Groovy²å¼þshellÖ´ÐÐÎó²î |
|
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ê¹ÓÃjavaÃô¸Ðº¯Êýexcute,Ö´ÐÐÀֳɿÉÄÜ»áÔì³ÉÏÂÁîÖ´ÐС£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
|
ÊÂÎñÃû³Æ£º |
TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_ÉÏ´«ÍÚ¿ó״̬ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
Lucifer/Satan_DDosÊÇÒ»¸ö»ìÏýÐÍľÂí£¬£¬£¬£¬£¬£¬£¬£¬¼È¿ÉÒÔ¾ÙÐÐÍڿ󣬣¬£¬£¬£¬£¬£¬£¬ÓÖÄܹ»¾ÙÐÐDDOS¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ»¹Äܹ»Í¨¹ýʹÓöà¸öÎó²îºÍMSSQL±©Á¦ÆÆ½âÀ´¾ÙÐÐ×ÔÎÒÈö²¥¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿µÄÊͷŲ¢ÔËÐÐEternalBlue£¬£¬£¬£¬£¬£¬£¬£¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¡£¡£¡£¸ÃľÂíʹÓõÄÎó²îÇåµ¥°üÀ¨£ºCVE-2014-6287£¬£¬£¬£¬£¬£¬£¬£¬CVE-2018-1000861£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-10271£¬£¬£¬£¬£¬£¬£¬£¬ThinkPHP RCEÎó²î£¨CVE-2018-20062£©£¬£¬£¬£¬£¬£¬£¬£¬CVE-2018-7600£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-9791£¬£¬£¬£¬£¬£¬£¬£¬CVE-2019-9081£¬£¬£¬£¬£¬£¬£¬£¬PHPStudyºóÃÅRCE£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-0144£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-0145ºÍCVE-2017-8464¡£¡£¡£¡£¸ÃÊÂÎñÅú×¢ÍÚ¿ó³ÌÐòÕýÔÚÉÏ´«ÍÚ¿ó״̬ÐÅÏ¢¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
|
ÊÂÎñÃû³Æ£º |
TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_ÅþÁ¬ |
|
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
|
ÊÂÎñÐÎò£º |
¼ì²âµ½Ê¹ÓûìÏýÐÍľÂíLucifer/Satan_DDosÅþÁ¬Ð§ÀÍÆ÷µÄÐÐΪ¡£¡£¡£¡£Lucifer/Satan_DDosÊÇÒ»¸ö»ìÏýÐÍľÂí£¬£¬£¬£¬£¬£¬£¬£¬¼È¿ÉÒÔ¾ÙÐÐÍڿ󣬣¬£¬£¬£¬£¬£¬£¬ÓÖÄܹ»¾ÙÐÐDDOS¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ»¹Äܹ»Í¨¹ýʹÓöà¸öÎó²îºÍMSSQL±©Á¦ÆÆ½âÀ´¾ÙÐÐ×ÔÎÒÈö²¥¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿µÄÊͷŲ¢ÔËÐÐEternalBlue£¬£¬£¬£¬£¬£¬£¬£¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¡£¡£¡£¸ÃľÂíʹÓõÄÎó²îÇåµ¥°üÀ¨£ºCVE-2014-6287£¬£¬£¬£¬£¬£¬£¬£¬CVE-2018-1000861£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-10271£¬£¬£¬£¬£¬£¬£¬£¬ThinkPHP RCEÎó²î£¨CVE-2018-20062£©£¬£¬£¬£¬£¬£¬£¬£¬CVE-2018-7600£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-9791£¬£¬£¬£¬£¬£¬£¬£¬CVE-2019-9081£¬£¬£¬£¬£¬£¬£¬£¬PHPStudyºóÃÅRCE£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-0144£¬£¬£¬£¬£¬£¬£¬£¬CVE-2017-0145ºÍCVE-2017-8464¡£¡£¡£¡£ |
|
¸üÐÂʱ¼ä£º |
20200721 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º
TCP_ľÂí_CoinMiner_ʵÑéÅþÁ¬¿ó³Ø
Çå¾²ÀàÐÍ£º
ľÂíºóÃÅ
ÊÂÎñÐÎò£º
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£¡£¡£¡£
¸üÐÂʱ¼ä£º
20200721


¾©¹«Íø°²±¸11010802024551ºÅ