ÐÅÏ¢Çå¾²Öܱ¨-2020ÄêµÚ37ÖÜ
Ðû²¼Ê±¼ä 2020-09-14> ±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö
2020Äê09ÔÂ07ÈÕÖÁ09ÔÂ13ÈÕ¹²ÊÕ¼Çå¾²Îó²î57¸ö£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇSAP Solution ManagerÑéÖ¤¼ì²éȱʧÎó²î£»£»£»£»£»£»£»Tenda AC18 Router´úÂëÖ´ÐÐÎó²î£»£»£»£»£»£»£»Android mediaframework CVE-2020-0245´úÂëÖ´ÐÐÎó²î£»£»£»£»£»£»£»Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î£»£»£»£»£»£»£»Project Worlds Car Rental Management Systemí§ÒâÎļþÉÏ´«Îó²î¡£¡£¡£¡£¡£¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇWhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸öÎó²î£¬£¬£¬ÏÖÒÑÐÞ¸´£»£»£»£»£»£»£»ÆôÓÃHyper-VµÄWin10ϵͳÖб£´æ0day£¬£¬£¬¿É½¨ÉèÎļþ£»£»£»£»£»£»£»Î¢ÈíÐû²¼9Ô·ÝÇå¾²¸üУ¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î£»£»£»£»£»£»£»AdobeÐû²¼Çå¾²¸üУ¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ12¸öÎó²î£»£»£»£»£»£»£»CodeMeterÖб£´æÑÏÖØÎó²î£¬£¬£¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷¡£¡£¡£¡£¡£¡£¡£
ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£¡£¡£
> Ö÷ÒªÇå¾²Îó²îÁбí
1.SAP Solution ManagerÑéÖ¤¼ì²éȱʧÎó²î
SAP Solution Manager±£´æÑéÖ¤¼ì²éȱʧÎó²î£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬Î´ÊÚȨ¿ØÖÆ»á¼ûÓ¦Óᣡ£¡£¡£¡£¡£¡£
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=557449700
2. Tenda AC18 Router´úÂëÖ´ÐÐÎó²î
Tenda AC18 Router /usr/lib/lua/lua/ngx_authserver/ngx_wdasÖеÄlogincheck£¨£©º¯ÊýµÄÉí·ÝÑéÖ¤´¦Öóͷ£±£´æÎó²î£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬Î´ÊÚȨִÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£
https://www.tendacn.com/en/product/AC18.html
3.Android mediaframework CVE-2020-0245´úÂëÖ´ÐÐÎó²î
Android mediaframework±£´æÇå¾²Îó²î£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇ󣬣¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬¿ÉʹӦÓóÌÐòÍ߽⻣»£»£»£»£»£»òÕßÒÔϵͳÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£
https://source.android.com/security/bulletin/2020-09-01
4. Microsoft ChakraCore CVE-2020-1172ÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î
Microsoft ChakraCore±£´æÄÚ´æÆÆËðÎó²î£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄWEBÇëÇ󣬣¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬¿ÉʹӦÓóÌÐòÍ߽⻣»£»£»£»£»£»òÕßÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2020-1172
5. Project Worlds Car Rental Management Systemí§ÒâÎļþÉÏ´«Îó²î
Project Worlds Car Rental Management System³µÍ¼ÏñÉÏ´«×é¼þ±£´æÇå¾²Îó²î£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬¿ÉÉÏ´«í§ÒâÎļþ£¬£¬£¬²¢Ö´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£
https://github.com/hyd3sec/CarRentalManagement-Unauth-RCE-WebApp
> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö
1¡¢WhatsAppÅû¶ÆäÓ¦ÓÃÖеÄ6¸öÎó²î£¬£¬£¬ÏÖÒÑÐÞ¸´

WhatsAppÅû¶ÆäÓ¦ÓÃÖб£´æµÄ6¸öÎó²î£¬£¬£¬ÏÖÒÑÐÞ¸´¡£¡£¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄÎó²îÖнÏΪÑÏÖØµÄΪ¿ÍջдÈëÒç³öÎó²î£¨CVE-2020-1894£©£¬£¬£¬¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐУ¬£¬£¬32λװ±¸±£´æµÄдÒç³öÎó²î£¨CVE-2020-1891£©ºÍURLÑéÖ¤ÎÊÌ⣨CVE-2020-1890£©£¬£¬£¬¿Éµ¼ÖºڿÍÔÚûÓÐÓëÓû§½»»¥µÄÇéÐÎÏ´ӷ¢¼þÈ˵ÄURL¼ÓÔØÍ¼Ïñ¡£¡£¡£¡£¡£¡£¡£ÆäËûÎó²îΪÇå¾²¼ì²âÈÆ¹ýÎÊÌ⣨CVE-2020-1889µÄ£©¡¢»º³åÇøÒç³öÎó²î£¨CVE-2020-1886£©ºÍÊäÈëÑéÖ¤ÎÊÌ⣨CVE-2019-11928£©¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/107950/security/whatsapp-undisclosed-flaws.html
2¡¢ÆôÓÃHyper-VµÄWin10ϵͳÖб£´æ0day£¬£¬£¬¿É½¨ÉèÎļþ

ÄæÏò¹¤³ÌʦJonas LykkegaardÔÚÆôÓÃÁËHyper-VµÄWindows 10ϵͳÖз¢Ã÷ÁËÒ»¸öеÄ0day£¬£¬£¬¸ÃÎó²î¿É±»Ê¹ÓÃÔÚÊÜÓ°ÏìµÄ²Ù×÷ϵͳÖн¨ÉèÎļþ¡£¡£¡£¡£¡£¡£¡£ÔÚHyper-V´¦Óڻ״̬ʱ£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚ\ system32Öн¨ÉèÎļþ£¬£¬£¬²¢ÇÒ²»ÐèÒª¾ÙÐÐÌáȨ¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚÎļþµÄ½¨ÉèÕßÒ²ÊÇËùÓÐÕߣ¬£¬£¬Òò´Ë¹¥»÷Õß¿ÉÒÔʹÓøÃÎļþ½«¶ñÒâ´úÂë×¢ÈëϵͳÄÚ²¿£¬£¬£¬²¢ÔÚÐèҪʱʹÓÃÌáÉýµÄȨÏÞÖ´ÐиöñÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£CERT/CCÎó²îÆÊÎöʦWill Dormann ÌåÏÖ£¬£¬£¬¹¥»÷ÕßÏÕЩ²»ÐèÒª×öÈÎºÎÆð¾¢±ã¿ÉÒÔʹÓøÃÎó²î¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/windows-10-sandbox-activation-enables-zero-day-vulnerability/
3¡¢Î¢ÈíÐû²¼9Ô·ÝÇå¾²¸üУ¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î

΢ÈíÐû²¼ÁË9Ô·ÝÇå¾²¸üУ¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î£¬£¬£¬ÆäÖаüÀ¨23¸öÑÏÖØÎó²î¡£¡£¡£¡£¡£¡£¡£Ö»¹Ü´Ë´Î¸üÐÂÖв¢Ã»ÓÐ0day£¬£¬£¬µ«ÈÔÓÐÐí¶àÎó²î¿É±»Ô¶³ÌʹÓᣡ£¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ¾ÍΪÑÏÖØµÄÈý¸öÎó²î»®·ÖΪMicrosoft ExchangeÄÚ´æËð»µÎó²î£¨CVE-2020-16875£©£¬£¬£¬Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²î¿ÉÒÔ½öͨ¹ýÏòExchangeЧÀÍÆ÷·¢ËÍÌØÖÆµç×ÓÓʼþÔ¶³ÌÖ´ÐдúÂ룬£¬£¬WindowsÔ¶³ÌÖ´ÐдúÂëµÄMicrosoft COMÎó²î£¨CVE-2020-0922£©£¬£¬£¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û´øÓжñÒâJavaScriptµÄÕ¾µãÀ´¼ÓÒÔʹÓ㬣¬£¬ÒÔ¼°WindowsÎı¾Ð§ÀÍÄ£¿£¿£¿£¿£¿£¿£¿éÔ¶³ÌÖ´ÐдúÂëÎó²î£¨CVE-2020-0908£©£¬£¬£¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û°üÀ¨¶ñÒâ¹ã¸æµÄÍøÕ¾À´¼ÓÒÔʹÓᣡ£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/microsoft-september-2020-patch-tuesday-fixes-129-vulnerabilities/
4¡¢AdobeÐû²¼Çå¾²¸üУ¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ12¸öÎó²î

AdobeÐû²¼Çå¾²¸üУ¬£¬£¬ÒÑÐÞ¸´Ó°ÏìÆäAdobe InDesign¡¢Adobe FramemakerºÍAdobe Experience Manager²úÆ·ÖеÄ12¸ö´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¡£¡£´Ë´Î¸üÐÂÐÞ¸´ÁËAdobe InDesignÖÐÒòÄÚ´æË𻵵¼ÖµÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9727¡¢CVE-2020-9728¡¢CVE-2020-9729¡¢CVE-2020-9730ºÍCVE-2020-9731£©£¬£¬£¬FramemakerÖÐÔ½½ç¶ÁÈ¡µ¼ÖµĴúÂëÖ´ÐÐÎó²î£¨CVE-2020-9726£©ºÍ»ùÓÚ¿ÍÕ»µÄ»º³åÇøÒç³öµÄ´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9725 £©£¬£¬£¬ÒÔ¼°Experience ManagerÖеĶà¸öXSSÎó²î¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-vulnerabilities-in-indesign-and-framemaker/
5¡¢CodeMeterÖб£´æÑÏÖØÎó²î£¬£¬£¬¿Éµ¼ÖÂOT¹©Ó¦Á´¹¥»÷

Claroty·¢Ã÷Î÷ÃÅ×ӵȶ¥¼¶ICS¹©Ó¦ÉÌʹÓõĵÚÈý·½¹¤Òµ×é¼þCodeMeterÖб£´æ6¸öÑÏÖØµÄÎó²î£¬£¬£¬»ò½«µ¼ÖÂOT¹©Ó¦Á´¹¥»÷£¬£¬£¬ÕâЩÎó²îµÄCVSSÆÀ·Ö¾ùΪ10.0¡£¡£¡£¡£¡£¡£¡£CISAÌåÏÖ£¬£¬£¬¹¥»÷ÕßÀÖ³ÉʹÓÃÕâЩÎó²îºó¿É¸ü¸ÄºÍαÔìÔÊÐíÖ¤Îļþ£¬£¬£¬µ¼Ö¾ܾøÐ§ÀÍÇéÐΣ¬£¬£¬Ç±ÔÚµØÊµÏÖÔ¶³ÌÖ´ÐдúÂë¡¢¶ÁÈ¡¶ÑÊý¾Ý²¢×èÖ¹ÒÀÀµCodeMeterµÄµÚÈý·½Èí¼þµÄÕý³£ÔËÐС£¡£¡£¡£¡£¡£¡£ÆäÖÐ×îÑÏÖØµÄÎó²î¿Éͨ¹ýÆÆËðCodeMeterÍ¨Ñ¶ÐæÅºÍÄÚ²¿APÒÔIÔ¶³ÌÖ´ÐдúÂ룬£¬£¬ÊµÏÖICSϵͳµÄÍêÈ«½ÓÊÜ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/critical-bugs-enable-ot-supply/


¾©¹«Íø°²±¸11010802024551ºÅ