2020-12-29

°ä²¼¹¦·ò 2020-12-29

ÐÂÔöÊÂÎñ



ÊÂÎñÃû³Æ£º£º

HTTP_°²È«·ì϶_ColdFusionδÊÚȨÉÏ´«·ì϶[CVE-2018-15961][CNNVD-201809-485]

°²È«ÀàÐÍ£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º

ColdFusionδÊÚȨÉÏ´«·ì϶Äܹ»Í¨¹ýÒ»¸öµ¥Ò»µÄHTTPPOSTÒªÇóµ½upload.cfmÎļþ½øÐÐÀûÓ㬣¬upload.cfmÊÇûÓÐÏ޶ȵÄ£¬£¬Ò²²»±ØÒªÈκεÄÈÏÖ¤¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

HTTP_TeaLaTex1_0_Ô¶³Ì´úÂëÖ´Ðзì϶

°²È«ÀàÐÍ£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º

¼ì²â¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃTeaLaTex1_0µÄ·ì϶½øÐÐÔ¶³Ì´úÂëÖ´ÐУ»LaTeXÊÇÒ»ÖÖ±à×빤¾ß£¬£¬Í¨³£ÓÃÓڳﱸ¿ÆÑ§Îļþ£¬£¬³ö¸ñÊÇÔÚÊýѧ£¬£¬Í³¼Æ£¬£¬ÍÆËã»ú¿ÆÑ§ºÍ¹¤³ÌÁìÓò¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

HTTP_Moobot_»Ø¾ø·þÎñ¹¥»÷

°²È«ÀàÐÍ£º£º

É¢²¼Ê½»Ø¾ø·þÎñ

ÊÂÎñÃèÊö£º£º

¼ì²âµ½Ô´IPÖ÷»úÊÔͼ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐMoobot_»Ø¾ø·þÎñ¹¥»÷¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


Åú¸ÄÊÂÎñ


ÊÂÎñÃû³Æ

HTTP_ThinkPHP5Ô¶³Ì´úÂëÖ´Ðзì϶

°²È«ÀàÐÍ£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃThinkPHP¿ò¼ÜÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»úµÄÐÐΪ£¬£¬ÊÔͼԶ³Ì×¢ÈëPHP´úÂ룬£¬ÔÚÖ¸±ê·þÎñÆ÷ÉÏÖ´ÐÐËÁÒâ´úÂë»òºÅÁî¡£¡£¡£¡£ThinkPHPÊÇÒ»¸öÊ¢ÐеÄÇáÁ¿¼¶¹ú²úPHP¿ª·¢¿ò¼Ü¡£¡£¡£¡£µ±WebÍøÕ¾ÊÇ»ùÓÚThinkPHP¿ò¼Ü¿ª·¢Ê±£¬£¬¿ÉÄÜ´æÔڸ÷ì϶ʱ¡£¡£¡£¡£¹¥»÷Õß·¢Ë;«ÐÄ»ú¹ØµÄPHP´úÂëÔÚÖ¸±êÖ÷»úÉÏÖ´ÐУ¬£¬Ì°Í¼½øÒ»²½½ÚÀñ·þÎñÆ÷¡£¡£¡£¡£¹¥»÷³É¹¦£¬£¬¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

HTTP_ͨÓÃ_Ŀ¼´©Ô½·ì϶[CVE-2019-11510/CVE-2020-5410/CVE-2019-19781/CVE-2020-5902]

°²È«ÀàÐÍ£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚ³¢ÊÔ¶ÔÖ÷ÕÅIPÖ÷»ú½øÐÐĿ¼´©Ô½·ì϶¹¥»÷³¢ÊÔµÄÐÐΪ¡£¡£¡£¡£Ä¿Â¼´©Ô½·ì϶ÄÜʹ¹¥»÷ÕßÈÆ¹ýWeb·þÎñÆ÷µÄ½Ó¼ûÏÞ¶È£¬£¬¶Ôweb¸ùĿ¼ÒÔÍâµÄÎļþ¼Ð£¬£¬ËÁÒâµØ¶ÁÈ¡ÉõÖÁдÈëÎļþÊý¾Ý¡£¡£¡£¡£´Ë¹æ¶¨ÊÇÒ»ÌõͨÓù涨£¬£¬ÆäËû·ì϶£¨ÉõÖÁһЩ0day·ì϶£©¹¥»÷µÄpayloadÒ²ÓпÉÄÜ´¥·¢´ËÊÂÎñ±¨¾¯¡£¡£¡£¡£ÓÉÓÚÕý³£ÒµÎñÖÐͨ³£²»»á²úÉú´ËÊÂÎñÌØµãµÄÁ÷Á¿£¬£¬ËùÒÔ±ØÒªÖØµã¹Ø×¢¡£¡£¡£¡£ÔÊÐíÔ¶³Ì¹¥»÷Õß½Ó¼ûÃô¸ÐÎļþ¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

TCP_DrayTek_Ô¤Éí·ÝÑéÖ¤ºÅÁî×¢Èë·ì϶[CVE-2020-8515]

°²È«ÀàÐÍ£º£º

°²È«·ì϶

ÊÂÎñÃèÊö£º£º

¼ì²âµ½¹¥»÷ÕßÀûÓÃDrayTekÔ¤Éí·ÝÑéÖ¤´¦µÄÁ½´¦ºÅÁî×¢Èë·ì϶½øÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£DrayTekÊÇÒ»¼ÒÔÚÖйú³ö²ú·À»ðǽ£¬£¬VPNÉ豸£¬£¬Â·ÓÉÆ÷£¬£¬WLANÉ豸µÈµÄÖÆ×÷ÉÌ¡£¡£¡£¡£¸Ã·ì϶ԴÓÚ/cgi-bin/mainfunction.cgi·¨Ê½Î´ÕýÈ·¹ýÂËkeyPath×ֶκÍrtick×Ö¶ÎÆäÖеÄÌØÊâ×Ö·û£¬£¬¹¥»÷Õß¿ÉÀûÓø÷ì϶²»¾­¹ýÉí·ÝÑéÖ¤ÒÔrootȨÏÞÖ´ÐдúÂë¡£¡£¡£¡£¹¥»÷³É¹¦£¬£¬Äܹ»rootȨÏÞÖ´ÐдúÂë¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

HTTP_ºóÃÅ_Win32.wingames(ÂûÁ黨)_ÏνÓ

°²È«ÀàÐÍ£º£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º£º

¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅwingames¡£¡£¡£¡£wingamesÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÔËÐк󣬣¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£Ö´Ðй¥»÷Õß·¢À´µÄ¸÷ÀàºÅÁî¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

TCP_ºóÃÅ_MSAServices.Bitter.Rat(ÂûÁ黨)_ÏνÓ

°²È«ÀàÐÍ£º£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º£º

¼ì²âµ½BitterľÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËBitterľÂí¡£¡£¡£¡£BitterľÂíÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÔËÐк󣬣¬Äܹ»ÆëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£ÔÊÐí¹¥»÷Õ߯ëÈ«½ÚÖÆ±»Ö²Èë»úе¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

TCP_ºóÃÅ_PC_Access_ÏνÓ

°²È«ÀàÐÍ£º£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º£º

¸ÃÊÂÎñÔ´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËPC_AccessľÂí£¬£¬Ä¾ÂíµÄ½ÚÖÆÕßÄܹ»Í¨¹ý¸ÃľÂí¶Ô±»Ö²ÈëľÂíµÄÖ÷»úÖ´ÐÐÆëÈ«µÄ½ÚÖÆ¡£¡£¡£¡£¸ÃľÂí»á±£Áô¹¥»÷ÕßÔÚÖ¸±êÖ÷»úÉϵÄÖÎÀíԱȨÏÞ¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ÊÂÎñÃû³Æ£º£º

DNS_ºóÃÅ_Win32.KcnaBot_ÏνÓ

°²È«ÀàÐÍ£º£º

ľÂíºóÃÅ

ÊÂÎñÃèÊö£º£º

¼ì²âµ½ºóÃÅÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£¡£¡£¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅKcnaBot¡£¡£¡£¡£KcnaBotÊÇÒ»¸öÖ°Äܼ«¶È׳´óµÄºóÃÅ£¬£¬ÀûÓÃDNSºÍ̸ÓëC&C·þÎñÆ÷ͨѶ¡£¡£¡£¡£¿£½ÚÖÆ±»Ö²Èë»úе£¬£¬ÇÔÃÜÃô¸ÐÐÅÏ¢¡£¡£¡£¡£

¸üй¦·ò£º£º

20201229


ɾ³ýÊÂÎñ


1. HTTP_ľÂíºóÃÅ_Marap.Downloader_ÏνÓ

2. TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMB·ì϶ɨÃè[MS17-010]_1

3. TCP_NSA_EternalBlue_(ÓÀºãÖ®À¶)_SMB·ì϶ɨÃè[MS17-010]_2