ÿÖÜÉý¼¶Í¨¸æ-2023-05-23

Ðû²¼Ê±¼ä 2023-05-23

ÐÂÔöÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_×¢Èë¹¥»÷_Sinapsi_eSolar_Light_Photovoltaic_System_Monitor_SQL×¢Èë[CVE-2012-5861][CNNVD-201211-425]

Çå¾²ÀàÐÍ£º

×¢Èë¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýSinapsieSolarLightPhotovoltaicSystemMonitorSQL×¢ÈëÎó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£SinapsieSolarLightÊÇÌ«ÑôÄÜÓ¦ÓÃÄÚʹÓÃµÄ¼à¿ØÏµÍ³¡£¡£SinapsieSolar £¬£¬£¬£¬£¬SinapsieSolarDUO¹Ì¼þ2.0.2870_2.2.12֮ǰ°æ±¾Öб£´æ¶à¸öSQL×¢ÈëÎó²î¡£¡£Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²îͨ¹ý(1)primo²Ù×÷Öеġ®inverterselect¡¯²ÎÊý´«Ë͵½dettagliinverter.php¾ç±¾»ò(2)¡®lingua¡¯²ÎÊý´«Ë͵½changelanguagesession.php¾ç±¾ £¬£¬£¬£¬£¬Ö´ÐÐí§ÒâSQLÏÂÁî¡£¡£¹¥»÷Õ߿ɻñµÃÃô¸ÐÐÅÏ¢»ò²Ù×÷Êý¾Ý¿â¡£¡£

¸üÐÂʱ¼ä£º

20230523


ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÎļþÉÏ´«_EOFFICEV9.5_uploadify

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

·ºÎ¢ eofficev9.5±£´æÎļþÉÏ´«Îó²î

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_¿ÉÒÉÐÐΪ_·´ÐòÁл¯_YONYOUNC65_NCMessageServlet

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ÓÃÓÑNC6.5 NCMessageServlet ±£´æ·´ÐòÁл¯Îó²î

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Drupal-8.x_RCE[CVE-2018-7600][CNNVD-201803-1136]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

DrupalÊÇʹÓÃPHPÓïÑÔ±àдµÄ¿ªÔ´ÄÚÈÝÖÎÀí¿ò¼Ü£¨CMF£© £¬£¬£¬£¬£¬ËüÓÉÄÚÈÝÖÎÀíϵͳ£¨CMS£©ºÍPHP¿ª·¢¿ò¼Ü£¨Framework£©ÅäºÏ×é³É¡£¡£Ò»Á¬¶àÄêÈÙ»ñÈ«Çò×î¼ÑCMS´ó½± £¬£¬£¬£¬£¬ÊÇ»ùÓÚPHPÓïÑÔ×îÖøÃûµÄWEBÓ¦ÓóÌÐò¡£¡£Drupalv8.xÖÐ<v8.3.9/v8.4.x<v8.4.6/v8.5.x<v8.5.1°æ±¾±£´æÎó²îCVE-2018-7600 £¬£¬£¬£¬£¬¸ÃÎó²î»áµ¼Ö¹¥»÷ÕßÔÚÖ÷»úÉϾÙÐÐí§ÒâÏÂÁîÖ´ÐС£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_Floxif_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

FloxifÊÇÒ»ÖÖÓÉÀ´ÒѾõÄѬȾÐͲ¡¶¾,¸Ã²¡¶¾»á±©Á¦Ñ¬È¾Êܺ¦Õß»úеÉϵÄexeÒÔ¼°dllÎļþÀ´Èö²¥×ÔÉí¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_Ô¶¿ØºóÃÅ_MalSpam_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½MalSpamľÂíÓòÃûÆÊÎöÇëÇ󡣡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

DNS_ÏÂÁî¿ØÖÆ_ľÂíºóÃÅ_Tofsee_ÓòÃûÆÊÎöÇëÇó

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

Tofsee£¨Ò²³ÆÎªGheg£©ÊÇÒ»ÖÖ¶ñÒâÈí¼þ¼Ò×å £¬£¬£¬£¬£¬ÊôÓÚ½©Ê¬ÍøÂ磨botnet£©ºÍÀ¬»øÓʼþ£¨spam£©Èö²¥¹¤¾ß¡£¡£Ëüͨ³£Í¨¹ýÀ¬»øÓʼþ¸½¼þ¡¢¶ñÒâÏÂÔØ»òÕßÎó²îʹÓõȷ½·¨Èö²¥ £¬£¬£¬£¬£¬²¢½«ÊÜѬȾµÄÅÌËã»ú¼ÓÈëÒ»¸ö¿ØÖƽڵãÍøÂç £¬£¬£¬£¬£¬ÓÃÓÚÖ´ÐÐÖÖÖÖ¶ñÒâ»î¶¯ £¬£¬£¬£¬£¬Èç·¢ËÍÀ¬»øÓʼþ¡¢Èö²¥ÆäËû¶ñÒâÈí¼þ¡¢¾ÙÐÐÍøÂç´¹ÂÚµÈ.

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_ÏÂÁî¿ØÖÆ_ľÂíºóÃÅ_Fareit_ÉÏ´«Ö÷»úÃô¸ÐÐÅÏ¢

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

Fareit£¨Ò²³ÆÎªPony£©ÊÇÒ»ÖÖ¶ñÒâÈí¼þ¼Ò×å £¬£¬£¬£¬£¬ÊôÓÚÐÅÏ¢ÇÔȡľÂí£¨Trojan£©Öֱ𡣡£Ëüͨ³£Í¨¹ý¶ñÒâÏÂÔØ¡¢Îó²îʹÓá¢À¬»øÓʼþµÈ·½·¨Èö²¥ £¬£¬£¬£¬£¬²¢ÔÚÊÜѬȾµÄÅÌËã»úÉÏÖ´ÐжñÒâ»î¶¯ £¬£¬£¬£¬£¬°üÀ¨ÇÔÈ¡Ãô¸ÐÐÅÏ¢¡¢µÇ¼ƾ֤¡¢ÒøÐÐÕË»§ÐÅÏ¢µÈ¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ȨÏÞÈÆ¹ý_Dahua_ÉãÏñÍ·[CVE-2021-33044][CNNVD-202109-1080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

´ó»ª²¿·Ö²úÆ·ÔÚÉϰ¶Àú³ÌÖб£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î £¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ²»ÐèҪȨÏÞµÄÇéÐÎÏ £¬£¬£¬£¬£¬Í¨¹ý½á¹¹¶ñÒⱨÎļ´¿ÉÈÆ¹ý×°±¸Éí·ÝÑéÖ¤ £¬£¬£¬£¬£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÏÂÁîÖ´ÐÐ_Smartbi_Ô¶³ÌÏÂÁîÖ´ÐÐ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ö÷»úÕýÔÚÔâÊÜSmartbiÔ¶³ÌÏÂÁîÖ´Ðй¥»÷¡£¡£SmartbiÖÐδ¾­Éí·ÝÈÏÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉʹÓÃstub½Ó¿Ú½á¹¹ÇëÇóÈÆ¹ý²¹¶¡ÏÞÖÆ £¬£¬£¬£¬£¬½ø¶ø¿ØÖÆJDBCURL £¬£¬£¬£¬£¬Ôì³ÉÔ¶³Ì´úÂëÖ´ÐлòÐÅϢй¶¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÏÂÁîÖ´ÐÐ_D-Link_apply_sec.cgi[CVE-2019-16920][CNNVD-201909-1326]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃÄ¿µÄÖ÷»úD-Link²úÆ·£¨ÈçDIR-655C¡¢DIR-866L¡¢DIR-652ºÍDHP-1565£©ÖÐapply_sec.cgi´¦ÏÂÁî×¢ÈëÎó²î £¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²î½«í§Òâ×Ö·û´®·¢Ë͵½¡°PingTest¡±Íø¹Ø½Ó¿ÚÀ´ÊµÏÖÏÂÁî×¢Èë¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÎļþÉÏ´«_UEDITOR×é¼þʹÓÃ

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

UEDITOR ץȡԶ³ÌÊý¾ÝÔ´µÄʱ¼äδ¶ÔÎļþºó׺Ãû¾ÙÐÐÑéÖ¤ £¬£¬£¬£¬£¬µ¼ÖÂÁËí§ÒâÎļþµÄдÈëÎó²î¡£¡£ueditor°æ±¾<1.4.3Îó²îʹÓÃ

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_·´ÐòÁл¯_GoAnywhereMFT·´ÐòÁл¯Îó²î[CVE-2023-0669][CVE-2023-0669][CNNVD-202302-398]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýGoAnywhereMFT·´ÐòÁл¯Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£GoAnywhereMFTÖÎÀí¶Ë±£´æ·´ÐòÁл¯Îó²î £¬£¬£¬£¬£¬¹¥»÷ÕßʹÓøÃÎó²îÎÞÐèµÇ¼±ã¿ÉÒÔÔ¶³ÌÖ´ÐÐí§ÒâÏÂÁî¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ȨÏÞÈÆ¹ý_Dahua_ÉãÏñÍ·[CVE-2021-33044][CNNVD-202109-1080]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

´ó»ª²¿·Ö²úÆ·ÔÚÉϰ¶Àú³ÌÖб£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î £¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ²»ÐèҪȨÏÞµÄÇéÐÎÏ £¬£¬£¬£¬£¬Í¨¹ý½á¹¹¶ñÒⱨÎļ´¿ÉÈÆ¹ý×°±¸Éí·ÝÑéÖ¤ £¬£¬£¬£¬£¬»ñÈ¡ÖÎÀíԱȨÏÞ¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

HTTP_Îó²îʹÓÃ_ÐÅϢй¶_nginx¼à¿ØÒ³Ãæ

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ̽²âÄ¿µÄipÖ÷»úÖеÄnginx¼à¿ØÒ³Ãæ £¬£¬£¬£¬£¬¿ÉÒÔͨ¹ý»á¼û¸ÃÒ³ÃæÀ´Éó²éЧÀÍÆ÷ÔËÐÐ״̬¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÐÞ¸ÄÊÂÎñ

 

ÊÂÎñÃû³Æ£º

HTTP_½©Ê¬ÍøÂç_Andromeda_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½½©Ê¬ÍøÂçAndromedaÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷ £¬£¬£¬£¬£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËAndromeda¡£¡£AndromedaÊÇÒ»¸öÄ£¿£¿é»¯µÄ½©Ê¬ÍøÂç £¬£¬£¬£¬£¬×îԭʼµÄÎļþ½ö°üÀ¨Ò»¸ö¼ÓÔØÆ÷¡£¡£ÔËÐÐʱ´ú £¬£¬£¬£¬£¬»á´ÓC&CЧÀÍÆ÷ÏÂÔØÖÖÖÖÄ£¿£¿é £¬£¬£¬£¬£¬Í¬Ê±Ò²¾ßÓз´ÐéÄâ»úºÍ·´µ÷ÊԵĹ¦Ð§¡£¡£

¸üÐÂʱ¼ä£º

20230523

 

ÊÂÎñÃû³Æ£º

FTP_ľÂí_AgentTesla_Keylogger_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËAgentTesla Keylogger¡£¡£

AgentTesla KeyloggerÊÇÒ»¸ö¹¦Ð§Ç¿Ê¢µÄÇÔÃÜľÂí £¬£¬£¬£¬£¬¿ÉÇÔÈ¡°üÀ¨ä¯ÀÀÆ÷¡¢Óʼþ¡¢FTP¡¢¼ôÌù°åµÈ¿Í»§¶ËÉúÑĵÄÕ˺ÅÃÜÂë¡£¡£»£»£»£»£»¹¿ÉÒÔ½ØÈ¡ÆÁÄ»²¢ÉÏ´«¡£¡£

ÇÔÈ¡Ãô¸ÐÊý¾Ý¡£¡£

¸üÐÂʱ¼ä£º

20230523