Ç徲ͨ¸æ
-
Samsung SmartThings Hub¶à¸öÎó²î Çå¾²Íþвͨ¸æ
2018-08-01
×ÛÊö ¿ËÈÕ£¬TalosÍŶÓÐû²¼Á˶à¸ö¹ØÓÚSamsung SmartThings HubµÄÎó²î£¬°üÀ¨ÏÂÁî×¢Èë¡¢Ô¶³Ì´úÂëÖ´ÐеȸßΣÎó²î£¬×î¸ßCVSSÆÀ·Ö9 9¡£ ÏêϸÐÅÏ¢¿É²Î¿¼(ËÑË÷Òªº¦×Ö SmartThings)£º https: www talosintelligence com vulnerability_reports disclosed Îó²î¸ÅÊö Îó²îÃû³Æ ÖÖ±ð CVE CVSSÆÀ·Ö Video-coreÏà»ú¸üдúÂëÖ´ÐÐÎó²î CVE-2018-3903 CVE-2018-3904 9 9 Video-coreƾ֤´úÂëÖ´ÐÐÎó²î CVE-2018-3873
¸ü¶à -
AÕ¾ÍòÍòÓû§ÐÅϢй¶ Çå¾²Íþвͨ¸æ
2018-06-13
×ÛÊö¿ËÈÕ£¬µ¯Ä»ÊÓÆµÍøÕ¾AcFun(AÕ¾)Ðû²¼¹Ù·½ÉùÃ÷³ÆÆäÍøÕ¾±»ºÚ¿Í¹¥»÷£¬ÍòÍòÌõÓû§ÐÅϢй¶£¬°üÀ¨Óû§ÃûIDÓëÃÜÂëµÈ¡£ÕâЩй¶µÄÓû§ÐÅÏ¢ÔÚ°µÍøÉÏÒѱ»¹ûÕæ³öÊÛ£¬Í¬Ê±³öÊ۵Ϲ°üÀ¨ÆäËûÉ̼ҵÄÓû§ÐÅÏ¢¡£¹Ù·½Í¨¸æÁ´½Ó£¨»ò¼ûÎÄÄ©¸½Â¼£©£ºhttp: www acfun cn a ac4405547й¶ÏêÇéAÕ¾¹Ù·½³Æ±¾´Î×ß©µÄÐÅÏ¢°üÀ¨Óû§ÃûID£¬êdzƣ¬¼ÓÃÜ´æ´¢µÄÃÜÂëµÈ£¬²¢ÈϿɻù´¡Ôµ¹ÊÔÓÉÊÇÓÉÓÚûÓаÑAcFun×öµÄ×ã¹»Çå¾²¡£2017Äê7ÔÂ7ÈÕºó£¬AÕ¾Éý¼¶Ë¢ÐÂÁËеÄÓû§ÕË
¸ü¶à -
΢ÈíÐû²¼6Ô²¹¶¡ÐÞ¸´52¸öÇå¾²ÎÊÌâ
2018-06-13
×ÛÊö ΢ÈíÓÚÖܶþÐû²¼ÁË6ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË52¸ö´Ó¼òÆÓµÄÓÕÆ¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌ⣬²úÆ·Éæ¼°Adobe Flash Player¡¢Device Guard¡¢HID Parser Library¡¢Internet Explorer¡¢Microsoft Edge¡¢Microsoft NTFS¡¢Microsoft Office¡¢Microsoft scripting Engine¡¢Microsoft Windows¡¢Windows Hyper-V¡¢Windows KernelÒÔ¼°Windows Shell¡£½¹µãÎó²î CVE-2018-8248 | Microsoft Excel Ô¶³Ì´úÂëÖ´ÐÐÎó²î
¸ü¶à -
Adobe Flash Player¶à¸öÇå¾²Îó²î Çå¾²Íþвͨ¸æ
2018-06-08
×ÛÊöÍâµØÊ±¼ä6ÔÂ7ÈÕ£¬Adobe¹Ù·½Ðû²¼ÁËÒ»ÔòÇ徲ͨ¸æ£¬ÐÞ¸´ÁËAdobe Flash PlayerµÄ¶à¸öÎó²î£¬°üÀ¨ÐÅϢй¶ºÍí§Òâ´úÂëÖ´Ðеȡ£Îó²î¹éÄÉ×ÛºÏÈçÏ£ºCVE±àºÅÎó²îÓ°ÏìÑÏÖØË®Æ½CVE-2018-4945í§Òâ´úÂëÖ´ÐÐCriticalCVE-2018-5002CVE-2018-5000ÐÅϢй¶ImportantCVE-2018-5001ÏêϸÐÅÏ¢¿É²Î¿¼£ºhttps: helpx adobe com security products flash-player apsb18-19 htmlÊÜÓ°ÏìµÄ°æ±¾Adobe Flash Player <= 29 0 0 171²»ÊÜÓ°ÏìµÄ°æ±¾Adobe
¸ü¶à -
×ÛÊöÍâµØÊ±¼ä6ÔÂ6ÈÕ£¬Cisco¹Ù·½Ðû²¼Ò»ÔòÇ徲ͨ¸æ³ÆÆä²úÆ·ÖÐÓÃÓÚÈÏÖ¤¡¢ÊÚȨºÍ¼Í¼(AAA)µÄ·þÎñ±£´æÒ»¸öÑÏÖØÎó²î£¨CVE-2018-0315£©¡£Í¨¹ý¸ÃÎó²î£¬¹¥»÷ÕßÔÚδÊÚȨµÄÇéÐÎÏ¿ÉÒÔÔ¶³ÌÔÚÊÜÓ°ÏìµÄ×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬»òÕßÔì³É×°±¸µÄÖØ¼ÓÔØµ¼Ö¾ܾø·þÎñÌõ¼þ¡£CVSS3 0 Base 9 8 AV:N AC:L PR:N UI:N S:U C:H I:H A:H E:X RL:X RC:XÏêϸÐÅÏ¢¿É²Î¿¼£ºhttps: tools cisco com security center content CiscoSecurityAdvisory cisco-sa-2
¸ü¶à -
Zip Slipí§ÒâÎļþÁýÕÖÎó²î Çå¾²Íþвͨ¸æ
2018-06-06
×ÛÊöÍâµØÊ±¼ä6ÔÂ5ÈÕ£¬SnykµÄÑо¿Ô±Ðû²¼ÁËÒ»¸öÃûΪZip SlipµÄÎó²î¡£Í¨¹ý¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔʹÓÃÒ»¸öÌØÖÆµÄZIPѹËõÎļþ£¬Í¨¹ý·¾¶±éÀúÁýÕÖí§ÒâÎļþ£¬´Ó¶øµ¼ÖÂDZÔÚµÄÏÂÁîÖ´ÐС£ÏêϸÐÅÏ¢¿É²Î¿¼£ºhttps: snyk io research zip-slip-vulnerabilityÎó²î¸ÅÊö¹¥»÷Õß¿ÉÒÔʹÓÃÉúÑÄĿ¼±éÀúÎļþÃûµÄÌØÖÆµµ°¸Îļþ£¨ÀýÈç evil sh£©´¥·¢Zip SlipÎó²î¡£ Ò»µ©Ò×Êܹ¥»÷µÄ´úÂë¿âÌáÈ¡Á˹鵵ÎļþµÄÄÚÈÝ£¬¹¥»÷Õ߾ͿÉÒÔ½«ËüÓ¦¸ÃפÁôµÄÎļþ¼Ð
¸ü¶à








