ÐÅÏ¢°²È«Öܱ¨-2021ÄêµÚ10ÖÜ

°ä²¼¹¦·ò 2021-03-08

> ±¾Öܰ²È«Ì¬ÊÆ×ÛÊö


2021Äê03ÔÂ01ÈÕÖÁ03ÔÂ07ÈÕ¹²ÊÕ¼°²È«·ì϶60¸ö£¬£¬ £¬£¬£¬£¬ £¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Exchange Server CVE-2021-27078Ô¶³Ì´úÂëÖ´Ðзì϶£»£»£»£»£»Google Chrome TabStrip¶ÑÒç³ö´úÂëÖ´Ðзì϶£»£»£»£»£»CGAL libcgal CGAL PM_io_parser::read_vertex()Ô½½ç¶Á»Ø¾ø·þÎñ·ì϶£»£»£»£»£»Courier Management System MULTIPART street×¢Èë·ì϶£»£»£»£»£»Rockwell Automation WEB½Ó¿Ú¿çÕ¾¾ç±¾·ì϶¡£ ¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇRockwell AutomationµÄPLC´æÔÚÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶£»£»£»£»£»ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý£»£»£»£»£»UHSÐû³ÆÈ¥ÄêµÄRyukÀÕË÷¹¥»÷Ôì³É6700ÍòÃÀÔªµÄËðʧ£»£»£»£»£»SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©¸øÁ´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶£»£»£»£»£»ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆä»áÔ±ÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã¡£ ¡£¡£¡£¡£¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬£¬ £¬£¬£¬£¬ £¬£¬±¾Öܰ²È«ÍþвΪÖС£ ¡£¡£¡£¡£¡£


> ³ÁÒª°²È«·ì϶Áбí


1.Microsoft Exchange Server CVE-2021-27078Ô¶³Ì´úÂëÖ´Ðзì϶


Microsoft Exchange Server´æÔÚ°²È«·ì϶£¬£¬ £¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬ £¬£¬£¬£¬ £¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£ ¡£¡£¡£¡£¡£

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-27078


2.Google Chrome TabStrip¶ÑÒç³ö´úÂëÖ´Ðзì϶


Google Chrome TabStrip´æÔÚ¶ÑÒç¶Âí½Å£¬£¬ £¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄWEBÒ³£¬£¬ £¬£¬£¬£¬ £¬£¬ÓÕʹÓû§½âÎö£¬£¬ £¬£¬£¬£¬ £¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»òÒÔÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£ ¡£¡£¡£¡£¡£

https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop.html


3.CGAL libcgal CGAL PM_io_parser::read_vertex()Ô½½ç¶Á»Ø¾ø·þÎñ·ì϶


Laurent Rineau CGAL PM_io_parser::read_vertex()´æÔÚÔ½½ç¶Á·ì϶£¬£¬ £¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬ £¬£¬£¬£¬ £¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£¡£ ¡£¡£¡£¡£¡£

https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225


4.Courier Management System MULTIPART street×¢Èë·ì϶


SourceCodester Courier Management System MULTIPART street×ֶδ¦ÖôæÔÚSQL×¢Èë·ì϶£¬£¬ £¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄSQLÒªÇ󣬣¬ £¬£¬£¬£¬ £¬£¬²Ù×÷Êý¾Ý¿â£¬£¬ £¬£¬£¬£¬ £¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»òÖ´ÐÐËÁÒâ´úÂë¡£ ¡£¡£¡£¡£¡£

https://www.exploit-db.com/exploits/49242


5.Rockwell Automation WEB½Ó¿Ú¿çÕ¾¾ç±¾·ì϶


Rockwell Automation WEB½Ó¿Ú´æÔÚ¿çÕ¾¾ç±¾·ì϶£¬£¬ £¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶עÈë¶ñÒâ¾ç±¾»òHTML´úÂ룬£¬ £¬£¬£¬£¬ £¬£¬µ±¶ñÒâÊý¾Ý±»²é¿´Ê±£¬£¬ £¬£¬£¬£¬ £¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»ò½Ù³ÖÓû§»á»°¡£ ¡£¡£¡£¡£¡£

https://www.suse.com/support/update/announcement/2020/suse-su-202014502-1/


> ³ÁÒª°²È«ÊÂÎñ×ÛÊö


1¡¢Rockwell AutomationµÄPLC´æÔÚÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶


1.jpg


×êÑÐÈËÔ±·¢ÏÖRockwell AutomationµÄ¿É±à³ÌÂß¼­½ÚÔìÆ÷£¨PLC£©ÖдæÔÚÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶¡£ ¡£¡£¡£¡£¡£¸Ã·ì϶±»×·×ÙΪCVE-2021-22681£¬£¬ £¬£¬£¬£¬ £¬£¬CVSSÆÀ·ÖΪ10£¬£¬ £¬£¬£¬£¬ £¬£¬Æä´æÔÚÓÚLogix DesignerÈí¼þÖУ¬£¬ £¬£¬£¬£¬ £¬£¬ÊÇÓÉÓÚÑéÖ¤½ÚÔìÆ÷ͨѶµÄ˽ÓÐÃÜÔ¿±£»£»£»£»£»¤²»¼°µ¼ÖµÄ¡£ ¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÀûÓø÷ìÏ¶ÈÆ¹ýÑéÖ¤»úÔìÀ´ÏνÓLogix½ÚÔìÆ÷¡£ ¡£¡£¡£¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬ £¬£¬ÀûÓô˷ì϶ºÍµÚÈý·½¹¤¾ß»¹Äܸü¸Ä½ÚÔìÆ÷µÄÅäÖúÍÀûÓ÷¨Ê½´úÂë¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115085/ics-scada/rockwell-automation-software-flaw.html


2¡¢ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý


2.jpg


ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îAndroid VPN·þÎñ£¨SuperVPN¡¢GeckoVPNºÍChatVPN£©µÄÓû§Í´´¦ºÍÉ豸Êý¾Ý£¬£¬ £¬£¬£¬£¬ £¬£¬×ܹ²Éæ¼°2100ÍòÓû§¡£ ¡£¡£¡£¡£¡£Ð¹Â¶µÄÓû§ÐÅÏ¢Ô̺¬µç×ÓÓʼþµØÖ·¡¢Óû§Ãû¡¢ÐÕÃû¡¢¹úÃû¡¢Ëæ»úÌìÉúµÄÃÜÂë×Ö·û´®¡¢¸¶¿îÓйØ×ÊÁϺ͸߼¶»áÔ±Éí·Ý¼°ÆäÓÐЧÆÚµÈ£¬£¬ £¬£¬£¬£¬ £¬£¬É豸Êý¾ÝÔ̺¬É豸ÐòÁкš¢ÊÖ»úÀàÐͺÍÔì×÷ÉÌ¡¢É豸IDºÍÉ豸IMSI±àºÅµÈ¡£ ¡£¡£¡£¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÐû³ÆÒÑ»ñµÃ¶ÔVPN·þÎñÆ÷µÄÔ¶³Ì½Ó¼ûȨÏÞ£¬£¬ £¬£¬£¬£¬ £¬£¬Ä¿Ç°ÏúÊÛ¼Ûֵδ֪¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://cybernews.com/security/one-of-the-biggest-android-vpns-hacked-data-of-21-million-users-from-3-android-vpns-put-for-sale-online/


3¡¢UHSÐû³ÆÈ¥ÄêµÄRyukÀÕË÷¹¥»÷Ôì³É6700ÍòÃÀÔªµÄËðʧ


3.jpg


Universal Health Services£¨UHS£©Ðû³ÆÈ¥Äê9ÔµÄRyukÀÕË÷¹¥»÷¸øÆäÔì³ÉÁË6700ÍòÃÀÔªµÄËðʧ¡£ ¡£¡£¡£¡£¡£UHSµÄ×Ó¹«Ë¾±é¼°ÃÀ¹ú38¸öÖÝ£¬£¬ £¬£¬£¬£¬ £¬£¬Õ¼ÓÐ26¼Ò¼¹ØïÒ½ÔºÒÔ¼°42¼ÒÃÅÕïÉèÊ©ºÍÃÅÕï·þÎñÖÐÐÄ£¬£¬ £¬£¬£¬£¬ £¬£¬Òò¶øÍøÂç¹¥»÷µÄÓ°ÏìÉîÔ¶¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾£¬£¬ £¬£¬£¬£¬ £¬£¬´ó²¿ÃÅÓ°ÏìÓëÆä¼¹Øï·þÎñÓйØ£¬£¬ £¬£¬£¬£¬ £¬£¬ÀýÈçÒò»¼Õ߻Ï÷¼õÒÔ¼°ÓйصÄÕʵ¥ÑÓ³¤¶øµ¼ÖµĽ»Ò×ÊÕÈëµÄËðʧ¡£ ¡£¡£¡£¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬ £¬£¬IT·þÎñÌṩÉÌCognizantºÍÂÁ³ö²úÉÌNorsk HydroÈ¥ÄêÒ²Åû¶ÁËÀàËÆµÄÊÂÎñ£¬£¬ £¬£¬£¬£¬ £¬£¬Ëðʧ±ðÀë¸ß´ï7000ÍòÃÀÔªºÍ4000ÍòÃÀÔª¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/universal-health-services-lost-67-million-due-to-ryuk-ransomware-attack/


4¡¢SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©¸øÁ´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶


4.jpg


Èí¼þ¹«Ë¾SolarWindsµÄÒ»Ãû¸ß¹Ü³ÆÆäÔâµ½¹©¸øÁ´¹¥»÷µÄµ××ÓÔ­ÒòÊÇÒ»ÃûʵϰÉúʹÓÃÁËÈõÃÜÂë¡£ ¡£¡£¡£¡£¡£³õ´ëÊ©²éÏÔʾ£¬£¬ £¬£¬£¬£¬ £¬£¬×Ô2018Äê6ÔÂ17ÈÕÒÔÀ´£¬£¬ £¬£¬£¬£¬ £¬£¬ÅäÖÃÃýÎóµÄGitHub´æ´¢¿âй¶ÁËÃÜÂësolarwinds123£¬£¬ £¬£¬£¬£¬ £¬£¬¸ÃÎÊÌâÒÑÔÚ2019Äê11ÔÂ22ÈÕ½â¾ö£¬£¬ £¬£¬£¬£¬ £¬£¬¶ø×î³õµÄ¹¥»÷¿ÉÄܲúÉúÓÚ2019Äê9ÔÂ4ÈÕ¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾µÄCEO°µÊ¾£¬£¬ £¬£¬£¬£¬ £¬£¬Õâ¿ÉÄÜÊÇÒ»ÃûʵϰÉúÓÚ2017ÄêÔÚËûµÄһ̨·þÎñÆ÷ÉÏʹÓõÄÃÜÂ룬£¬ £¬£¬£¬£¬ £¬£¬²¢Ë½Ï½«ÃÜÂë°ä²¼µ½ÁËÆäÄÚ²¿Github¸öÈËÕÊ»§ÉÏ¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115134/security/solarwinds-intern-solarwinds123-password-leak.html


5¡¢ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆä»áÔ±ÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã


5.jpg


ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆäEnrich³£´î¿Í´òËãÖлáÔ±µÄÓ×ÎÒÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾ÆäÊÕµ½À´×ÔµÚÈý·½IT·þÎñÌṩÉ̵Ä֪ͨ£¬£¬ £¬£¬£¬£¬ £¬£¬Ö¸³ö¸Ã¹«Ë¾ÔÚ2010Äê3ÔÂÖÁ2019Äê6ÔÂÆÚ¼ä²úÉúÁËÊý¾Ýй¶£¬£¬ £¬£¬£¬£¬ £¬£¬Ð¹Â¶µÄÊý¾ÝÔ̺¬»áÔ±µÄÃû³Æ¡¢ÁªÏµÐÅÏ¢¡¢µ®ÉúÈÕÆÚ¡¢ÐԱ𡢳£´î¿ÍºÅÂ롢״̬ºÍ¼Î½±µÈ¼¶¡£ ¡£¡£¡£¡£¡£Ä¿Ç°Éв»Ã÷ÏÔÊÜÓ°Ïì»áÔ±µÄÁìÓò£¬£¬ £¬£¬£¬£¬ £¬£¬¸Ã¹«Ë¾Ò²Î´°ä²¼¸ü¶àÓйØÕâ´ÎÊÂÎñµÄÐÅÏ¢¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malaysia-airlines-discloses-a-nine-year-long-data-breach/