2020-07-14

Ðû²¼Ê±¼ä 2020-07-15

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_ÈÕÖ¾ÎļþÐÅϢй¶

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ £¬¿É¶ÁȡĿµÄIPÖ÷»úÉϵÄÃô¸ÐÐÅÏ¢Îļþ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_Spring_Boot_Actuator_δÊÚȨ»á¼ûÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

ActuatorÊÇSpring BootÌṩµÄ·þÎñ¼à¿ØºÍÖÎÀíÖÐÐļþ £¬Ä¬ÈÏÉèÖû᷺Æð½Ó¿ÚδÊÚȨ»á¼û £¬²¿·Ö½Ó¿Ú»áÐ¹Â¶ÍøÕ¾Á÷Á¿ÐÅÏ¢ºÍÄÚ´æÐÅÏ¢µÈ £¬Ê¹ÓÃJolokia¿âÌØÕ÷ÉõÖÁ¿ÉÒÔÔ¶³ÌÖ´ÐÐí§Òâ´úÂë £¬»ñÈ¡·þÎñÆ÷ȨÏÞ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_´úÂëÖ´ÐÐ_Zoho-ManageEngine-Desktop-CentralÔ¶³Ì´úÂëÖ´ÐÐÎó²î

[CVE-2020-10189]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

Zoho ManageEngine Desktop Central ÊÇÒ»¿î»ùÓÚ Web µÄÆóÒµ¼¶·þÎñÆ÷¡¢×ÀÃæ»ú¼°Òƶ¯×°±¸ÖÎÀíÈí¼þ £¬¿É¶Ô×ÀÃæ»úÒÔ¼°Òƶ¯×°±¸ÖÎÀíµÄÕû¸öÉúÃüÖÜÆÚÌṩÍêÈ«µÄÖ§³Ö £¬ÌṩÈí¼þ·Ö·¢¡¢²¹¶¡ÖÎÀí¡¢×ʲúÖÎÀí¡¢ÏµÍ³ÉèÖá¢Ô¶³Ì¿ØÖÆ¡¢USB ÍâÉèÖÎÀí¡¢ÒÆ¶¯×°±¸¼°Ó¦ÓÃÖÎÀíµÈ¹¦Ð§Ä£¿é £¬×ÊÖú IT ÖÎÀíÔ±¼¯ÖÐÔ¶³ÌÖÎÀí´ó×ÚµÄ PC ºÍ IOS/Android/Windows ÒÆ¶¯×°±¸¡£ÔÚZoho ManageEngine Desktop Central < 10.0.474µÄ°æ±¾ÖÐ £¬±£´æ·´ÐòÁл¯Îó²î¡£¹¥»÷Õß¿ÉÒÔͨ¹ý½á¹¹·´ÐòÁл¯×ֶδ¥·¢·´ÐòÁл¯Îó²îÖ´Ðй¥»÷ÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

TCP_Apache_Dubbo_Provider_·´ÐòÁл¯Îó²î[CVE-2020-1948]

Çå¾²ÀàÐÍ£º

ÍøÂçͨѶ

ÊÂÎñÐÎò£º

Apache DubboÊǰ¢Àï°Í°Í¹«Ë¾¿ªÔ´µÄÒ»¸ö¸ßÐÔÄÜÓÅÒìµÄ·þÎñ¿ò¼Ü £¬ÊµÏÖÁ˸ßÐÔÄܵÄRPC(Ô¶³ÌÀú³ÌŲÓÃ)¹¦Ð§¡£

¸üÐÂʱ¼ä£º

20200707


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_PostgreSQL_í§ÒâÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

PostgreSQLʵÏÖÁË¡°COPY TO/FROM PROGRAM¡±Õâ¸öÐµĹ¦Ð§ £¬ËüÔÊÐíÊý¾Ý¿âµÄ³¬µÈÓû§ÒÔ¼°¡°pg_read_server_files¡±×éÓû§Ö´ÐÐí§ÒâµÄ²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_PostgreSQL_í§ÒâÏÂÁîÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

PostgreSQLʵÏÖÁË¡°COPY TO/FROM PROGRAM¡±Õâ¸öÐµĹ¦Ð§ £¬ËüÔÊÐíÊý¾Ý¿âµÄ³¬µÈÓû§ÒÔ¼°¡°pg_read_server_files¡±×éÓû§Ö´ÐÐí§ÒâµÄ²Ù×÷ϵͳÏÂÁî¡£

¸üÐÂʱ¼ä£º

20200714



ÐÞ¸ÄÊÂÎñ



ÊÂÎñÃû³Æ£º

HTTP_Rejetto_HTTPFileServer_ParserLib.pas´úÂë×¢ÈëÎó²î[CVE-2014-6287]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ê¹ÓÃRejetto HTTP File ServerÖб£´æµÄ´úÂë×¢ÈëÎó²î¾ÙÐй¥»÷µÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200714


ÊÂÎñÃû³Æ£º

HTTP_ThinkPHP5Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃThinkPHP¿ò¼ÜÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ £¬ÊÔͼԶ³Ì×¢ÈëPHP´úÂë £¬ÔÚÄ¿µÄ·þÎñÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë»òÏÂÁî¡£HTTP»ù±¾ÈÏÖ¤µÄÄ¿µÄÊÇÌṩ¼òÆÓµÄÓû§ÑéÖ¤¹¦Ð§ £¬ÆäÈÏÖ¤Àú³Ì¼òÆÓÃ÷Îú £¬ÊʺÏÓÚ¶ÔÇå¾²ÐÔÒªÇ󲻸ߵÄϵͳ»ò×°±¸ÖС£

¸üÐÂʱ¼ä£º

20200714