ÿÖÜÉý¼¶Í¨¸æ-2022-05-10
Ðû²¼Ê±¼ä 2022-05-10ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_GoAhead_Ô¶³ÌÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | GoAheadÊÇÒ»¸ö¿ªÔ´(ÉÌÒµÔÊÐí)¡¢¼òÆÓ¡¢ÇáÓ¯¡¢¹¦Ð§Ç¿Ê¢¡¢¿ÉÒÔÔÚ¶à¸öƽ̨ÔËÐеÄWebServer£¬£¬£¬£¬£¬£¬¶àÓÃÓÚǶÈëʽϵͳ¡¢ÖÇÄÜ×°±¸¡£¡£¡£ÆäÖ§³ÖÔËÐÐASP¡¢JavascriptºÍ±ê×¼µÄCGI³ÌÐò£¬£¬£¬£¬£¬£¬Õâ¸öÎó²î¾Í·ºÆðÔÚÔËÐÐCGI³ÌÐòµÄʱ¼ä¡£¡£¡£GoAheadÔÚÎüÊÕµ½ÇëÇóºó£¬£¬£¬£¬£¬£¬½«»á´ÓURL²ÎÊýÖÐÈ¡³ö¼üºÍÖµ×¢²á½øCGI³ÌÐòµÄÇéÐαäÁ¿£¬£¬£¬£¬£¬£¬ÇÒÖ»¹ýÂËÁËREMOTE_HOSTºÍHTTP_AUTHORIZATION¡£¡£¡£ÎÒÃÇÄܹ»¿ØÖÆÇéÐαäÁ¿£¬£¬£¬£¬£¬£¬¾ÍÓÐÐí¶à¹¥»÷·½·¨¡£¡£¡£ºÃ±ÈÔÚLinuxÖУ¬£¬£¬£¬£¬£¬LD_¿ªÍ·µÄÇéÐαäÁ¿ºÍ¶¯Ì¬Á´½Ó¿âÓйأ¬£¬£¬£¬£¬£¬ÈçLD_PRELOADÖÐÖ¸¶¨µÄ¶¯Ì¬Á´½Ó¿â£¬£¬£¬£¬£¬£¬½«»á±»×Ô¶¯¼ÓÔØ£»£»£»LD_LIBRARY_PATHÖ¸¶¨µÄ·¾¶£¬£¬£¬£¬£¬£¬³ÌÐò»áÈ¥ÆäÖÐѰÕÒ¶¯Ì¬Á´½Ó¿â¡£¡£¡£ÎÒÃÇ¿ÉÒÔÖ¸¶¨LD_PRELOAD=/proc/self/fd/0£¬£¬£¬£¬£¬£¬ÓÉÓÚ/proc/self/fd/0ÊDZê×¼ÊäÈ룬£¬£¬£¬£¬£¬¶øÔÚCGI³ÌÐòÖУ¬£¬£¬£¬£¬£¬POSTÊý¾ÝÁ÷¼´Îª±ê×¼ÊäÈëÁ÷¡£¡£¡£ÎÒÃDZàÒëÒ»¸ö¶¯Ì¬Á´½Ó¿â£¬£¬£¬£¬£¬£¬½«Æä·ÅÔÚPOSTBodyÖУ¬£¬£¬£¬£¬£¬·¢Ë͸øhttp://target/cgi-bin/index?LD_PRELOAD=/proc/self/fd/0£¬£¬£¬£¬£¬£¬CGI¾Í»á¼ÓÔØÎÒÃÇ·¢Ë͵Ķ¯Ì¬Á´½Ó¿â£¬£¬£¬£¬£¬£¬Ôì³ÉÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_FreePBX_Ô¶³ÌÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | FreePBXÊÇÒ»¸ö×îǿʢµÄGUI£¨»ùÓÚÍøÒ³µÄ£©ÉèÖÃAsteriskµÄ¹¤¾ß£¬£¬£¬£¬£¬£¬ÔÚÆä13ºÍ14°æ±¾±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬Ö÷»úÓб»Ö´ÐÐí§ÒâϵͳÏÂÁîµÄΣº¦¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_WordPress_Levo_Slideshow_2.3_í§ÒâÎļþÉÏ´«Îó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | WordPressLevo-Slideshow²å¼þ2.3°æ±¾±£´æÎļþÉÏ´«Îó²î£¬£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ¶ÔÉÏ´«Îļþºó׺¼ì²â²»ÑϽ÷£¬£¬£¬£¬£¬£¬¿Éµ¼ÖºڿÍÉÏ´«¶ñÒâÎļþ¿ØÖÆÖ÷»ú¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_CA_Privileged_Access_Manager_ÏÂÁî×¢ÈëÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | CAPrivilegedAccessManager2.8.2¼°¸üÔç°æ±¾Öб£´æÒ»¸öÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬£¬£¬¸ÃÎó²îÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÌØÖÆÇëÇóÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_PixelStor_Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î[CVE-2020-6756][CNNVD-202001-346] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | RasilientPixelStor5000K:4.0.1580-20150629£¨KDI°æ±¾£©ÖеÄlanguageOptions.phpÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýlang²ÎÊýÔ¶³ÌÖ´ÐÐÏÂÁî¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |

ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_PmWiki_PageListSort_Ô¶³Ì´úÂë×¢ÈëÎó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | PmWikiÊÇÒ»ÖÖ»ùÓÚWikiÊÖÒյĿªÔ´¶àÈËÐ×÷Õ¾µã½¨ÉèºÍά»¤¹¤¾ß¡£¡£¡£PmWiki2.0.0µ½2.2.34°æ±¾Öб£´æÔ¶³ÌPHP´úÂë×¢ÈëÎó²î¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚÊÜÓ°ÏìµÄÓ¦ÓóÌÐòÉÏÏÂÎÄÖÐ×¢ÈëºÍÖ´ÐÐí§ÒâPHP´úÂ룬£¬£¬£¬£¬£¬Õâ¿ÉÄÜ»áÔö½ø¹¥»÷Õß²Ù¿ØÓ¦ÓóÌÐòºÍµ×²ãϵͳ£¬£¬£¬£¬£¬£¬»òÕßÔì³ÉÆäËûµÄ¹¥»÷¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Basilic1.5.14-diff.php_Ô¶³ÌÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | BasilicÖб£´æÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚÊÜÓ°ÏìÓ¦ÓóÌÐòÉÏÏÂÎÄÖÐÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£Basilic1.5.14°æ±¾Öб£´æÎó²î£¬£¬£¬£¬£¬£¬ÆäËû°æ±¾Ò²¿ÉÄÜÊܵ½Ó°Ïì¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_WAN-Emulator-v2.3_í§ÒâÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | WANEmulatorÊǹãÓòÍøÂçÄ£ÄâÆ÷¡£¡£¡£WANEmulator±£´æ²»·¨»á¼ûÎó²î£¬£¬£¬£¬£¬£¬dosu¶þ½øÖÆÎļþ×°ÖÃÁËsetuidrootºó¿É´¥·¢´ËÎó²î£¬£¬£¬£¬£¬£¬µ¼ÖÂÍâµØ¹¥»÷Õß»ñÈ¡rootȨÏÞ¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_ºÃÊÓͨÊÓÆµ¾Û»áϵͳ_í§ÒâÎļþÏÂÔØ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ºÃÊÓͨÊÓÆµ¾Û»áÆóÒµ°æÐ§ÀÍÆ÷ÖÎÀíºǫ́±£´æí§ÒâÎļþÏÂÔØÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²î»ñÈ¡Ãô¸ÐÐÅÏ¢¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬¹©Ó¦ÉÌÐû²¼ÁËÇ徲ͨ¸æ¼°Ïà¹Ø²¹¶¡ÐÅÏ¢£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁË´ËÎó²î¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Ruckus_IoT_Controller_Éí·ÝÑéÖ¤ÈÆ¹ýÎó²î[CVE-2020-26879][CNNVD-202010-1425] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | RuckusIoTController£¨<=1.5.1.0.21°æ±¾£©Öб£´æÒ»¸öÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚ¶ÔÈ«ÐÄÉè¼ÆµÄHTTPÇëÇó´¦Öóͷ£²»µ±Ôì³ÉµÄ£¬£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔͨ¹ýÏòÄ¿µÄЧÀÍÆ÷·¢ËÍÈ«ÐÄÉè¼ÆµÄHTTPÇëÇóÀ´Ê¹ÓøÃÎó²î£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓÿÉÄÜÔÊÐí¹¥»÷ÕßÈÆ¹ýÉí·ÝÑéÖ¤¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | HTTP_Çå¾²Îó²î_Vtiger-CRM-×°Öþ籾_δÊÚÈ¨ÖØ×° |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | VtigerCRMÊÇÃÀ¹úVtiger¹«Ë¾µÄÒ»Ì×»ùÓÚSugarCRM¿ª·¢µÄ¿Í»§¹ØÏµÖÎÀíϵͳ£¨CRM£©£¬£¬£¬£¬£¬£¬ËüÌṩÖÎÀí¡¢ÍøÂç¡¢ÆÊÎö¿Í»§ÐÅÏ¢µÈ¹¦Ð§¡£¡£¡£InstallModuleÊÇÆäÖеÄÒ»¸ö×°ÖÃÄ£¿£¿£¿é¡£¡£¡£VtigerCRM6.0°æ±¾µÄInstallÄ£¿£¿£¿éÖеÄviews/Index.php¾ç±¾Öб£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓÐ׼ȷÏÞÖÆ»á¼ûȨÏÞ¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËͰüÀ¨X-Requested-WithHTTPÍ·ÉèÖõÄÇëÇóʹÓøÃÎó²î֨װӦÓóÌÐò¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |
ÊÂÎñÃû³Æ£º | TCP_¿ÉÒÉÐÐΪ_systeminfo_Ô¶³ÌÏÂÁîÖ´ÐÐ |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | Á÷Á¿Öмì²âµ½Ö´ÐÐÁËÃô¸ÐϵͳÏÂÁîµÄ»ØÏÔÐÅÏ¢£¬£¬£¬£¬£¬£¬ËµÃ÷Ö÷»úÓпÉÄÜÒѾ±»ÈëÇÖ£¬£¬£¬£¬£¬£¬ÇÒ¹¥»÷Õß¾ßÓÐÖ´ÐÐϵͳÏÂÁîµÄȨÏÞ¡£¡£¡£ |
¸üÐÂʱ¼ä£º | 20220510 |


¾©¹«Íø°²±¸11010802024551ºÅ