¡¾Îó²îͨ¸æ¡¿Fortra FileCatalyst WorkflowÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2024-25153£©

Ðû²¼Ê±¼ä 2024-03-19

Ò»¡¢Îó²î¸ÅÊö

Îó²îÃû³Æ

    Fortra   FileCatalyst WorkflowÔ¶³Ì´úÂëÖ´ÐÐÎó²î

CVE   ID

CVE-2024-25153

Îó²îÀàÐÍ

Ŀ¼±éÀú¡¢ÎļþÉÏ´«

·¢Ã÷ʱ¼ä

2024-03-19

Îó²îÆÀ·Ö

9.8

Îó²îÆ·¼¶

ÑÏÖØ

¹¥»÷ÏòÁ¿

ÍøÂç

ËùÐèȨÏÞ

ÎÞ

ʹÓÃÄѶÈ

µÍ

Óû§½»»¥

ÎÞ

PoC/EXP

ÒѹûÕæ

ÔÚҰʹÓÃ

δ֪

 

Fortra FileCatalyst ÊÇÒ»¸öÆóÒµÎļþ´«ÊäÖÎÀí (MFT) ½â¾ö¼Æ»®£¬£¬£¬ £¬£¬ £¬ÓÉFileCatalyst Direct¡¢Workflow ºÍ CentralµÈ¶à¸ö×é¼þ×é³É¡£¡£¡£ ¡£¡£¡£FileCatalyst Workflow°üÀ¨Ò»¸öwebÃÅ»§£¬£¬£¬ £¬£¬ £¬ÔÊÐíÓû§ÓëÆä×éÖ¯ÄÚµÄÈκÎÈ˹²Ïí¡¢Ð޸ĺ͸ú×ÙÎļþ¡£¡£¡£ ¡£¡£¡£

2024Äê3ÔÂ19ÈÕ£¬£¬£¬ £¬£¬ £¬c7c7ÓéÀÖÆ½Ì¨VSRC¼à²âµ½Fortra FileCatalyst WorkflowÖÐÐÞ¸´ÁËÒ»¸öĿ¼±éÀúÎó²î£¨CVE-2024-25153£©£¬£¬£¬ £¬£¬ £¬ÆäCVSSÆÀ·ÖΪ9.8£¬£¬£¬ £¬£¬ £¬ÏÖÔÚ¸ÃÎó²îµÄϸ½Ú¼°PoCÒѹûÕæ¡£¡£¡£ ¡£¡£¡£

FileCatalyst Workflow °æ±¾5.1.6 Build 114֮ǰÔÚ/workflow/servlet/ftpservletÖб£´æ²»Çå¾²µÄÎļþÉÏ´«ºÍĿ¼±éÀúÎó²î£¬£¬£¬ £¬£¬ £¬¿Éͨ¹ýÌØÖÆPOSTÇëÇ󽫶ñÒâÎļþÉÏ´«µ½ÏÞÖÆµÄuploadtempĿ¼֮ÍâµÄλÖ㬣¬£¬ £¬£¬ £¬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£ ¡£¡£¡£


 

¶þ¡¢Ó°Ïì¹æÄ£

Fortra FileCatalyst Workflow 5.x < 5.1.6 Build 114

 

Èý¡¢Çå¾²²½·¥

3.1 Éý¼¶°æ±¾

ÏÖÔÚ¸ÃÎó²îÒѾ­ÐÞ¸´£¬£¬£¬ £¬£¬ £¬ÊÜÓ°ÏìÓû§¿ÉÉý¼¶µ½Fortra FileCatalyst Workflow 5.1.6 Build 114»ò¸ü¸ß°æ±¾¡£¡£¡£ ¡£¡£¡£

ÏÂÔØÁ´½Ó£º

https://filecatalyst.software/workflow.html

3.2 ÔÝʱ²½·¥

ÔÝÎÞ¡£¡£¡£ ¡£¡£¡£

3.3 ͨÓý¨Òé

l  °´ÆÚ¸üÐÂϵͳ²¹¶¡£¬£¬£¬ £¬£¬ £¬ïÔ̭ϵͳÎó²î£¬£¬£¬ £¬£¬ £¬ÌáÉýЧÀÍÆ÷µÄÇå¾²ÐÔ¡£¡£¡£ ¡£¡£¡£

l  ÔöǿϵͳºÍÍøÂçµÄ»á¼û¿ØÖÆ£¬£¬£¬ £¬£¬ £¬Ð޸ķÀ»ðǽսÂÔ£¬£¬£¬ £¬£¬ £¬¹Ø±Õ·ÇÐëÒªµÄÓ¦Óö˿ڻòЧÀÍ£¬£¬£¬ £¬£¬ £¬ïÔÌ­½«Î£ÏÕЧÀÍ£¨ÈçSSH¡¢RDPµÈ£©Ì»Â¶µ½¹«Íø£¬£¬£¬ £¬£¬ £¬ïÔÌ­¹¥»÷Ãæ¡£¡£¡£ ¡£¡£¡£

l  ʹÓÃÆóÒµ¼¶Çå¾²²úÆ·£¬£¬£¬ £¬£¬ £¬ÌáÉýÆóÒµµÄÍøÂçÇå¾²ÐÔÄÜ¡£¡£¡£ ¡£¡£¡£

l  ÔöǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬£¬£¬ £¬£¬ £¬ÆôÓöàÒòËØÈÏÖ¤»úÖÆºÍ×îСȨÏÞÔ­Ôò£¬£¬£¬ £¬£¬ £¬Óû§ºÍÈí¼þȨÏÞÓ¦¼á³ÖÔÚ×îµÍÏÞ¶È¡£¡£¡£ ¡£¡£¡£

l  ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£¡£¡£ ¡£¡£¡£

3.4 ²Î¿¼Á´½Ó

https://www.fortra.com/security/advisory/fi-2024-002

https://labs.nettitude.com/blog/cve-2024-25153-remote-code-execution-in-fortra-filecatalyst/

 


ËÄ¡¢°æ±¾ÐÅÏ¢

°æ±¾

ÈÕÆÚ

±¸×¢

V1.0

2024-03-19

Ê×´ÎÐû²¼

 


Îå¡¢¸½Â¼

5.1 c7c7ÓéÀÖÆ½Ì¨¼ò½é

c7c7ÓéÀÖÆ½Ì¨½¨ÉèÓÚ1996Ä꣬£¬£¬ £¬£¬ £¬ÊÇÓÉÁôÃÀ²©Ê¿ÑÏÍû¼ÑŮʿ½¨ÉèµÄ¡¢ÓµÓÐÍêÈ«×ÔÖ÷֪ʶ²úȨµÄÐÅÏ¢Çå¾²¸ß¿Æ¼¼ÆóÒµ¡£¡£¡£ ¡£¡£¡£ÊǺ£ÄÚ×î¾ßʵÁ¦µÄÐÅÏ¢Çå¾²²úÆ·¡¢Ç徲ЧÀͽâ¾ö¼Æ»®µÄÁ캽ÆóÒµÖ®Ò»¡£¡£¡£ ¡£¡£¡£

¹«Ë¾×ܲ¿Î»ÓÚ±±¾©ÊÐÖйشåÈí¼þÔ°c7c7ÓéÀÖÆ½Ì¨´óÏ㬣¬£¬ £¬£¬ £¬¹«Ë¾Ô±¹¤6000ÓàÈË£¬£¬£¬ £¬£¬ £¬Ñз¢ÍŶÓ1200ÓàÈË, ÊÖÒÕЧÀÍÍŶÓ1300ÓàÈË¡£¡£¡£ ¡£¡£¡£ÔÚÌìϸ÷Ê¡¡¢ÊС¢×ÔÖÎÇøÉèÁ¢·ÖÖ§»ú¹¹ÁùÊ®¶à¸ö£¬£¬£¬ £¬£¬ £¬ÓµÓÐÁýÕÖÌìϵÄÏúÊÛϵͳ¡¢ÇþµÀϵͳºÍÊÖÒÕÖ§³Öϵͳ¡£¡£¡£ ¡£¡£¡£¹«Ë¾ÓÚ2010Äê6ÔÂ23ÈÕÔÚÉîÛÚÖÐС°å¹ÒÅÆÉÏÊС£¡£¡£ ¡£¡£¡££¨¹ÉƱ´úÂ룺002439£©

¶àÄêÀ´£¬£¬£¬ £¬£¬ £¬c7c7ÓéÀÖÆ½Ì¨ÖÂÁ¦ÓÚÌṩ¾ßÓйú¼Ê¾ºÕùÁ¦µÄ×ÔÖ÷Á¢ÒìµÄÇå¾²²úÆ·ºÍ×î¼Ñʵ¼ùЧÀÍ£¬£¬£¬ £¬£¬ £¬×ÊÖú¿Í»§ÖÜÈ«ÌáÉýÆäIT»ù´¡ÉèÊ©µÄÇå¾²ÐÔºÍÉú²úЧÄÜ£¬£¬£¬ £¬£¬ £¬Îª´òÔìºÍÌáÉý¹ú¼Ê»¯µÄÃñ×åÐÅÏ¢Çå¾²¹¤ÒµÁì¾üÆ·ÅÆ¶ø²»Ð¸Æð¾¢¡£¡£¡£ ¡£¡£¡£

5.2 ¹ØÓÚc7c7ÓéÀÖÆ½Ì¨

c7c7ÓéÀÖÆ½Ì¨Çå¾²Ó¦¼±ÏìÓ¦ÖÐÐÄÒÑÐû²¼1000¶à¸öÎó²îͨ¸æºÍΣº¦Ô¤¾¯£¬£¬£¬ £¬£¬ £¬ÎÒÃǽ«Ò»Á¬¸ú×ÙÈ«Çò×îеÄÍøÂçÇå¾²ÊÂÎñºÍÎó²î£¬£¬£¬ £¬£¬ £¬ÎªÆóÒµµÄÐÅÏ¢Çå¾²±£¼Ý»¤º½¡£¡£¡£ ¡£¡£¡£

¹Ø×¢ÎÒÃÇ£º

image.png