Ç徲ͨ¸æ
-
ÆÊÎö·À»¤:Struts2 Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨S2-045£©
2017-03-08
Îó²îÆÊÎöApache Struts2µÄJakarta Multipart parser²å¼þ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬Îó²î±àºÅΪCNNVD-201703-152¡£¹¥»÷Õß¿ÉÒÔÔÚʹÓøòå¼þÉÏ´«Îļþʱ£¬ÐÞ¸ÄHTTPÇëÇóÍ·ÖеÄContent-TypeÖµÀ´´¥·¢¸ÃÎó²î£¬µ¼ÖÂÔ¶³ÌÖ´ÐдúÂë¡£Ïà¹ØÁ´½ÓÈçÏ£ºhttps: cwiki apache org confluence display WW S2-045?from=timeline&isappinstalled=0 Ó°ÏìµÄ°æ±¾Struts 2 3 5 - Struts 2 3 31Struts 2 5 - Struts 2 5 10²»ÊÜÓ°ÏìµÄ°æ±¾Struts
¸ü¶à -
Ô¤¾¯Í¨¸æ:Struts2 Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨S2-045£©
2017-03-07
Apache Struts2 Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨S2-045£©Apache Structs2µÄJakartaMultipart parser²å¼þ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬Îó²î±àºÅΪCVE-2017-5638¡£¹¥»÷Õß¿ÉÒÔÔÚʹÓøòå¼þÉÏ´«Îļþʱ£¬ÐÞ¸ÄHTTPÇëÇóÍ·ÖеÄContent-TypeÖµÀ´´¥·¢¸ÃÎó²î£¬µ¼ÖÂÔ¶³ÌÖ´ÐдúÂë¡£ Ïà¹ØÁ´½ÓÈçÏ£º https: cwiki apache org confluence display WW S2-045?from=timeline&isappinstalled=0 ¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвԤ¾¯¼¶±ð ¸ß¼¶£ºÓ°Ïì¹æÄ£½ÏÁ¿¹ã£¬Î£º¦
¸ü¶à -
WordPress REST API ÄÚÈÝ×¢ÈëÎó²îÆÊÎö
2017-02-10
WordPressÊÇÒ»ÖÖʹÓÃPHPÓïÑÔ¿ª·¢µÄ²©¿Íƽ̨£¬Óû§¿ÉÒÔÔÚÖ§³ÖPHPºÍMySQLÊý¾Ý¿âµÄ·þÎñÆ÷ÉϼÜÉèÊôÓÚ×Ô¼ºµÄÍøÕ¾¡£Ò²¿ÉÒÔ°Ñ WordPress¿´³ÉÒ»¸öÄÚÈÝÖÎÀíϵͳÀ´Ê¹Óá£WordPress ÔÚ4 7 0°æ±¾Ö®ºó½«REST API²å¼þ¼¯³Éµ½Ä¬ÈϹ¦Ð§Ö®ÖС£REST APIΪWordPressµÄʹÓÃÕßÌṩÁËÒ»¸öÀû±ã¿ì½ÝµÄÖÎÀí½Ó¿Ú¡£ÔÚWordPress 4 7 0-4 7 1°æ±¾Öб£´æ×ÅÒ»¸öԽȨÎó²î£¬ÀֳɵÄʹÓÃÕâ¸öÎó²î£¬¿ÉÒÔÈÆ¹ýÖÎÀíԱȨÏÞ¶ÔÎÄÕ¾ÙÐÐÔöɾ¸Ä²é²Ù×÷¡£Ó°Ïì°æ±¾WordPres
¸ü¶à -
2017-01-20
×î½ü£¬²¿·ÖºÚ¿Í×éÖ¯Õë¶Ô¼¸¿îÌØ¶¨²úÆ·Õö¿ªÁËÀÕË÷¹¥»÷¡£×èÖ¹µ½ÉÏÖÜ£¬ÒÑÓÐÖÁÉÙ34000¶ą̀MongoDBÊý¾Ý¿â±»ºÚ¿Í×éÖ¯ÈëÇÖ£¬Êý¾Ý¿âÖеÄÊý¾Ý±»ºÚ¿Í²Á³ý²¢Ë÷ÒªÊê½ð¡£ÊÂÎñ×ÛÊö ×î½ü£¬²¿·ÖºÚ¿Í×éÖ¯Õë¶Ô¼¸¿îÌØ¶¨²úÆ·Õö¿ªÁËÀÕË÷¹¥»÷¡£×èÖ¹µ½ÉÏÖÜ£¬ÒÑÓÐÖÁÉÙ34000¶ą̀MongoDBÊý¾Ý¿â±»ºÚ¿Í×éÖ¯ÈëÇÖ£¬Êý¾Ý¿âÖеÄÊý¾Ý±»ºÚ¿Í²Á³ý²¢Ë÷ÒªÊê½ð¡£Ëæºó£¬ÔÚ2017Äê1ÔÂ18ÈÕµ±Ì죬ÓÖÓÐÊý°Ų̀ElasticSearch·þÎñÆ÷Êܵ½ÁËÀÕË÷¹¥»÷£¬·þÎñÆ÷ÖеÄÊý¾Ý±»²Á³ý¡£Çå¾²
¸ü¶à -
LinuxÄÚºËÍâµØÌáȨÎó²îÊÖÒÕÆÊÎöÓë·À»¤¼Æ»®
2016-10-13
¾ÅÓÎÀÏ¸ç¿Æ¼¼Ðû²¼LinuxÄÚºËÍâµØÌáȨÎó²îÍþвԤ¾¯Í¨¸æ Õâ¸öÎó²î9Äê²Å±»ÐÞ¸´ ¡£¾Í CVE-2016-5195 Õâ¸öÎó²î£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼Ðû²¼ÊÖÒÕÆÊÎö¼°·À»¤¼Æ»®¡£ LinuxÄں˵ÄÄÚ´æ×ÓϵͳÔÚ´¦Öóͷ£Ð´Ê±¿½±´(Copy-on-Write£¬ËõдΪCOW)ʱ±£´æÌõ¼þ¾ºÕùÎó²î£¬µ¼Ö¿ÉÒÔÆÆËð˽ÓÐÖ»¶ÁÄÚ´æÓ³Éä¡£Ò»¸öµÍȨÏÞµÄÍâµØÓû§Äܹ»Ê¹ÓôËÎó²î»ñÈ¡ÆäËûÖ»¶ÁÄÚ´æÓ³ÉäµÄдȨÏÞ£¬½ø¶ø¿ÉÒÔ»ñÈ¡Õû¸öϵͳµÄ×î¸ßȨÏÞ¡£Îó²îÏêÇéÈçÏ£ºhttps: github com dirtycow dirtycow git
¸ü¶à -
2016-09-08
Ëæ×Å“»¥ÁªÍø+ÖÆÔ씵Ĺ¤Òµ4 0¿´·¨µÄÌá³ö£¬×ÔÁ¦¡¢¸ôÀëµÄ¹Å°å¹¤¿ØÁìÓòÓÀ´ÁËеĴóÊý¾Ý»¥ÁªÊ±´ú¡£Óë´Ëͬʱ£¬¹¤¿ØÇå¾²µÄÎÊÌâ£¬Ò²Ëæ×Å»¥Áª£¬±»¸üÆÕ±éµÄ̻¶ÔÚÁËInternetÖС£ÔÚShodan¡¢ZoomEyeµÈËÑË÷ÍøÕ¾ÖУ¬¿ÉÒÔºÜÈÝÒ×µÄËÑË÷µ½ÕæÊµ¹¤¿ØÏÖ³¡¹¤¿Ø×°±¸µÄIPµØµã£¬²¢ÇÒ¿ÉÒÔʹÓÃ×é̬Èí¼þ»á¼ûµ½¶ÔÓ¦µÄ×°±¸¡£½ü¼¸ÄêÀ´£¬Ô½À´Ô½¶àµÄ¹¤¿Ø×°±¸±»Ì»Â¶ÔÚÁË»¥ÁªÍøÉÏ¡£ÔÚBlack Hat2011£¬Dillon BeresfordµÈÈËÔÚËûÃǵı¨¸æ¡¶Exploiting Siemens
¸ü¶à








