Ç徲ͨ¸æ
-
SambaÔ¶³Ì´úÂëÖ´ÐУ¨CVE-2017-7494£©Íþвͨ¸æ
2017-05-25
5ÔÂ24 07:21:14 UTC 2017£¬Samba¹Ù·½Ðû²¼ÐÂÎÅ£¬Samba·þÎñÆ÷Èí¼þ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¹¥»÷Õß¿ÉÒÔʹÓÿͻ§¶Ë½«Ö¸¶¨¿âÎļþÉÏ´«µ½¾ßÓпÉдȨÏ޵Ĺ²ÏíĿ¼£¬»áµ¼Ö·þÎñÆ÷¼ÓÔØ²¢Ö´ÐÐÖ¸¶¨µÄ¿âÎļþ¡£CVE±àºÅΪCVE-2017-7494 ²Î¿¼ÄÚÈÝÈçÏ£º https: lists samba org archive samba-announce 2017 000406 html ¼ò½é SambaÊÇÒ»¸öÄÜÈÃÀàUnixÅÌËã»úºÍÆäËüMS WindowsÅÌËã»úÏ໥¹²Ïí×ÊÔ´µÄÈí¼þ¡£SambaÌṩÓйØ×ÊÔ´¹²ÏíµÄÈý¸ö¹¦Ð§
¸ü¶à -
ÍâµØÊ±¼ä5ÔÂ17ÈÕ£¨±±¾©Ê±¼ä5ÔÂ18ÈÕ£©£¬ÄÚÈÝÖÎÀíϵͳ£¨CMS£©Joomla! Ðû²¼Í¨¸æ³ÆÐÞ¸´ÁËÒ»¸öSQL×¢ÈëÎó²î£¨CVE-2017-8917£©¡£¸ÃÎó²îÔ´ÓÚ3 7 0°æ±¾ÐÂÒýÈëµÄ“com_fields”×é¼þ£¬¸Ã×é¼þÎÞÐèÑéÖ¤£¬ÈκÎÈ˾ù¿É»á¼ûʹÓá£ÕâÒâζ×Å£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÖ±½Ó»á¼ûÊÜÓ°ÏìµÄÍøÕ¾À´¾ÙÐÐSQL×¢Èë¹¥»÷£¬»ñÈ¡ÃÜÂë¹þÏ£»òÕßÐ®ÖÆÓû§µÄsession´Ó¶øÓпÉÄÜÖÜÈ«¿ØÖƸÃÍøÕ¾¡£ ²Î¿¼Á´½Ó£º http: cve mitre org cgi-bin cvename cgi?name=CVE-2017-8917 h
¸ü¶à -
2017-05-13
±±¾©Ê±¼ä5ÔÂ12ÈÕÍí¼ä£¬È«Çò±¬·¢ÁËһϵÁÐÀÕË÷Èí¼þ£¨Wannacry£©µÄѬȾÊÂÎñ¡£º£ÄÚ´ó×ÚÆóÒµÔ⵽ѬȾ£¬¶à¸ö¸ßУµÄ½ÌÓýÍøÊܵ½Ñ¬È¾£¬µ¼ÖÂϵͳ̱»¾¡£Í¬Ê±¾ÝÓ¢¹ú¹ã²¥µçÊǪ́BBC±¨µÀ£¬È«Çòͳһʱ¼äÒ²±¬·¢Á˶àÆðÀÕË÷Èí¼þѬȾµÄÊÂÎñ£¬Ó¢¹ú¶à¼ÒÒ½Ôº±»Ñ¬È¾£¬¸ÃÀÕË÷Èí¼þ»á¼ÓÃܱ»Ñ¬È¾ÏµÍ³ÉϵÄ×ÊÁϺÍÊý¾Ý£¬ÒªÇóÖ§¸¶ÏìÓ¦µÄÊê½ð²Å»á½âÃܺͻָ´¡£°üÀ¨¶íÂÞ˹£¬Òâ´óÀû£¬´ó²¿·ÖÅ·ÖÞ¹ú¼Ò£¬ÒÔ¼°º£ÄÚ¶àËù¸ßУ¾ù±»Ñ¬È¾¡£ Ïà¹ØµØµã£º https: securelist
¸ü¶à -
Microsoft¶ñÒâÈí¼þ·À»¤ÒýÇæÔ¶³ÌÖ´ÐдúÂëÎó²î
2017-05-10
ÍâµØÊ±¼ä5ÔÂ8ÈÕ£¬±±¾©Ê±¼ä5ÔÂ9ÈÕ£¬Î¢Èí£¨Microsoft£©¹Ù·½Ðû²¼ÁËÒ»ÌõÇå¾²¸üгÆÐÞ¸´ÁËÒ»¸ö±£´æÓÚ΢Èí¶ñÒâÈí¼þ·À»¤ÒýÇæ£¨Microsoft Malware Protection Engine£©ÖеÄÎó²î£¨CVE-2017-0290£©¡£¸Ã¸üнâ¾öÁËMicrosoft¶ñÒâÈí¼þ·À»¤ÒýÇæÔÚɨÃèÌØÖÆÎļþʱ¿ÉÄܵ¼ÖµÄÔ¶³ÌÖ´ÐдúÂëµÄÎó²î¡£ ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚLocalSystemÕÊ»§ÖÐÖ´ÐÐí§Òâ´úÂ룬²¢¿ØÖÆÏµÍ³¡£Î¢ÈíÒѾÐû²¼Á˲¹¶¡ÐÞ¸´Á˸ÃÎó²î¡£ Ïà¹ØÁ´½Ó£º https: technet
¸ü¶à -
GE Multilin SR»ñÈ¡ÃÜÂë»á¼û¹¥»÷
2017-05-04
¿ËÈÕ£¬À´×ÔÃÀ¹úŦԼ´óѧµÄÒ»×éÑо¿Ö°Ô±·¢Ã÷GE Multilin SR¼Ìµç±£»¤×°Öñ£´æÑÏÖØµÄÇå¾²Îó²î¡£Ê¹ÓøÃÎó²î£¬¹¥»÷Õß¿ÉÒÔ»ñÈ¡ÃÜÂ룬²¢Í¨¹ý×Ô¼º±àдµÄÈí¼þ£¬ËæÒâ²Ù×÷Óë¸Ã¼Ìµç±£»¤×°±¸ÅþÁ¬µÄÒ»´Î×°±¸¡£ÀÖ³ÉʹÓôËÎó²î»áµ¼Ö¹¥»÷Õß»ñµÃÊÚȨ£¬¼´¿Éͨ¹ýÍøÂç¶ÔÒ»´Î×°±¸¾ÙÐÐí§Òâ²Ù×÷¡£ ²Î¿¼Á´½Ó£º http: www cnblogs com HacTF p 6790782 html http: hackernews cc archives 9435 ÌáÒª µ±µçÁ¦ÏµÍ³ÖеĵçÁ¦Ôª¼þ£¨Èç·¢µç»ú¡¢Ïß·
¸ü¶à -
WordPress Ô¶³Ì´úÂëÖ´ÐÐ/·ÇÊÚÈ¨ÖØÖÃÃÜÂë
2017-05-04
ÍâµØÊ±¼ä5ÔÂ3ÈÕ£¨±±¾©Ê±¼ä5ÔÂ4ÈÕÆÆÏþ£©£¬WordPress±»ÆØ³ö±£´æÑÏÖØµÄÇå¾²Òþ»¼¡£ Ò»Ôò¹ØÓÚÎó²îCVE-2016-10033µÄÐÂPOC±»±¬³ö¡£ÕâÊÇÒ»¸öPHPMailerµÄÎó²î£¬WordPress 4 6ʹÓÃÁ˱£´æ¸ÃÎó²îµÄPHPMailer£¬³öÓÚÇ徲˼Á¿£¬WordPress¹Ù·½ÔÚ4 7 1ÖиüÐÂÁËPHPMailer£¬½â¾öÁËÕâ¸öÎÊÌâ¡£µ«PHPMailerÎó²îµÄÔ×÷Õߣ¬ÓÖ·¢Ã÷ÁËÒ»¸öÕë¶ÔPHPMailerÔÚʹÓÃexim4 MTAʱµÄʹÓÃÒªÁì¡£ÐÂPOCµÄÆØ³öÒ²ÌåÏÖ×ÅWordPress 4 6°æ±¾¾ùÊÜÓ°Ïì¡£ Ò»¸öеÄÎó²î£¨
¸ü¶à








