吉沃运营专员 发表于 2023-8-9 23:19:23

情报共享 (8.9)

本文内容为互联网上收集,禁止用于非法用途,仅供学习使用!
漏洞

[*]深信服应用交付系统命令执行
[*]协同办公文档(DzzOfffice)未授权访问
[*]泛微OA前台代码执行漏洞
[*]泛微oa进后台漏洞
[*]ucloud的未授权获取任意用户cookie
[*]飞书客户端RCE漏洞
[*]泛微Eoffice V10前台RCE
[*]来客推商城任意文件上传
[*]天玥堡垒机0day
[*]明御运维审计与风险控制系统堡垒机任意用户注册
[*]XX协同管理系统存在SQL注入
[*]泛微emobile 注入漏洞
[*]海康威视综合安防前台文件上传漏洞
[*]蓝凌OA前台代码执行漏洞
[*]致远M3Server-xxxx反序列化漏洞
[*]致远A8 V8 SP1 SP2文件上传漏洞
[*]普元EOS前台代码执行漏洞
[*]泛微E-cology后台文件上传漏洞
[*]泛微E-Mobile任意用户登录
[*]泛微E-Office10信息泄露后台+后台文件上传漏洞
[*]契约锁电子签章系统RCE
[*]亿赛通电子文档平台文件上传漏洞
[*]Idocview命令执行漏洞
[*]jeesite代码执行漏洞
[*]LiveBOS文件上传漏洞
[*]用友nc-cloud-任意文件写入
[*]奇安信VPN PWN
[*]xx IOA PWN
[*]xxx准入 PWN
[*]eoffice9 前台文件包含
[*]泛微 E-Cology ifNewsCheckOutByCurrentUser SQL注入漏洞
[*]fastjson版本<2.0.27存在高危反序列化漏洞
[*]WPS 0day
[*]帆软channel序列化

IP
1.13.9.165
101.132.223.4
101.200.121.243
101.200.127.65
101.43.131.124
103.137.63.117
103.224.212.220
103.224.212.221
103.225.84.43
103.231.248.56
103.252.118.75
103.78.150.209
104.131.128.14
104.168.96.242
104.236.128.30
105.112.249.195
106.110.134.126
106.55.107.106
106.57.165.109
106.58.246.138
107.148.149.146
107.151.204.168
107.170.237.73
107.170.237.74
111.192.102.213
111.196.58.238
111.201.175.156
111.30.232.239
111.67.58.35
112.0.32.245
112.126.83.111
112.248.113.169
112.248.244.57
112.248.62.247
112.66.243.132
113.160.72.162
113.2.141.194
113.246.224.193
113.252.145.146
113.74.128.95
114.132.55.109
114.216.94.67
114.253.103.147
114.254.3.84
115.159.112.166
115.171.206.56
115.227.53.220
115.55.5.252
115.57.30.175
115.60.49.192
117.176.227.58
117.187.173.46
117.61.1.151
118.178.233.247
118.195.135.88
118.195.151.253
118.195.163.139
118.195.241.144
118.195.252.229
118.5.49.6
118.89.58.55
119.114.2.139
119.139.137.132
119.162.122.131
119.165.70.255
119.4.175.235
119.45.116.236
119.45.197.199
119.91.30.216
120.216.234.69
120.229.50.138
120.27.217.41
120.78.171.32
120.85.112.164
121.254.147.246
121.40.127.235
121.43.40.70
121.76.146.145
122.13.77.124
122.140.203.113
122.142.195.43
122.230.40.42
122.230.40.5
122.239.144.49
122.239.155.93
123.118.11.71
123.235.145.137
123.56.155.157
123.56.94.91
124.131.32.11
124.220.162.36
124.221.252.5
124.248.69.223
124.248.69.251
124.77.171.243
125.109.150.118
125.41.208.109
125.83.104.172
128.90.186.63
129.226.150.179
138.68.133.118
138.68.208.29
139.214.148.34
139.84.137.228
14.18.105.198
14.23.31.87
142.93.54.161
143.110.192.203
146.148.34.125
146.19.191.108
154.39.239.208
154.58.31.66
154.9.228.167
154.9.28.62
156.255.214.146
157.245.211.110
157.245.69.67
159.203.11.67
161.97.89.210
162.14.108.149
162.243.134.28
162.243.136.42
162.243.136.62
165.22.68.119
165.232.73.237
171.15.105.211
174.138.79.130
175.178.14.49
175.27.157.249
178.128.227.204
178.150.14.250
18.162.213.61
180.103.125.43
180.123.198.188
180.123.199.17
180.125.235.203
180.97.189.153
180.97.189.156
180.97.189.166
182.114.24.127
182.121.198.156
182.121.53.223
182.127.191.82
182.145.141.236
182.92.171.153
182.92.222.186
183.136.225.31
183.157.44.76
183.160.112.86
183.27.118.73
183.27.124.95
185.200.116.72
185.200.118.67
185.200.118.79
185.225.75.21
185.254.37.216
185.85.188.62
188.165.241.181
188.5.4.96
189.129.149.114
189.146.237.73
189.163.152.29
189.163.17.5
190.12.59.131
190.210.152.148
190.211.252.50
192.155.88.231
192.241.196.108
192.241.197.11
192.241.197.21
192.241.204.26
192.241.208.62
192.241.219.50
192.241.222.93
192.241.231.50
192.241.232.36
193.218.201.92
193.35.18.177
196.10.89.62
197.4.4.12
198.199.104.48
198.199.105.69
198.199.107.20
198.199.108.20
198.98.183.144
199.254.199.225
199.254.199.244
2.57.122.233
2.57.149.93
202.103.251.246
202.114.144.106
203.15.0.220
203.56.198.50
205.210.31.37
206.189.120.50
211.101.236.135
212.192.202.119
216.118.246.34
216.244.66.197
218.83.6.211
219.155.86.248
219.156.153.239
219.156.23.174
220.173.122.57
220.187.194.231
220.192.145.31
220.201.59.247
221.1.226.158
221.178.127.136
221.201.1.133
222.137.112.11
222.140.236.23
222.141.113.126
223.104.241.10
223.104.255.89
223.104.3.134
223.104.90.135
223.111.175.114
223.15.54.102
223.16.215.117
223.167.77.93
223.74.158.84
23.224.53.50
23.89.5.60
249.129.46.48
253.157.14.165
27.124.10.187
27.124.32.171
27.202.246.112
27.43.205.81
35.216.205.216
36.134.6.166
36.139.90.88
36.139.93.155
36.27.112.227
36.63.124.161
37.139.129.26
37.44.238.213
38.49.39.117
39.100.33.106
39.100.65.171
39.100.65.193
39.100.66.92
39.100.67.168
39.100.67.4
39.100.67.40
39.100.68.20
39.100.68.7
39.100.69.32
39.100.71.240
39.100.74.176
39.100.74.7
39.104.200.136
39.104.205.209
39.104.205.225
39.104.205.76
39.104.22.163
39.105.189.100
39.107.123.197
39.107.244.18
39.144.105.128
39.144.106.223
39.144.218.208
39.144.228.147
39.144.230.203
39.144.230.42
39.98.207.132
39.98.253.124
39.98.71.2
4.2.2.2
42.176.169.245
42.192.83.35
42.194.251.210
42.225.48.25
42.228.100.149
42.229.37.94
42.236.134.110
42.238.153.5
42.239.10.26
42.240.129.52
42.3.201.202
42.3.201.56
42.56.35.121
42.84.161.64
43.131.252.84
43.137.9.153
43.154.112.206
45.125.47.48
45.128.232.62
45.137.116.63
45.137.68.189
45.155.91.247
45.55.35.54
47.106.193.231
47.110.180.32
47.110.180.33
47.110.180.34
47.110.180.35
47.92.117.144
47.92.146.232
47.92.153.182
47.92.193.104
47.92.199.215
47.92.204.74
47.92.206.118
47.92.210.59
47.92.222.215
47.92.5.158
47.94.147.236
47.94.230.88
47.97.160.195
47.98.172.144
47.99.153.172
49.2.123.56
49.232.193.91
49.234.66.241
49.78.194.255
49.81.101.133
49.93.164.238
5.133.168.15
5.196.171.17
52.5.118.182
54.76.135.1
58.153.134.157
58.209.80.24
59.175.107.34
59.82.61.100
59.82.61.103
59.82.61.55
59.82.61.56
60.246.68.18
61.147.96.34
61.171.119.106
61.181.206.56
61.52.1.187
61.52.4.110
61.54.61.238
66.36.234.18
68.183.13.61
77.4.7.92
8.130.114.73
81.69.18.228
82.156.151.104
82.200.154.210
83.35.39.231
87.121.221.69
87.236.176.151
87.236.176.180
88.204.179.118
89.165.3.27
89.248.163.209
89.248.165.56
92.118.39.108
95.73.82.188
95.81.240.87
95.83.35.182
95.98.79.227
96.32.128.173
96.36.7.11
96.47.232.134
96.91.213.102
96.92.24.30
98.53.101.235
98.6.117.230
99.117.114.91
183.129.216.58        中国浙江杭州
47.96.109.11        中国浙江杭州
47.96.121.215        中国浙江杭州
47.96.126.164        中国浙江杭州
47.96.126.58        中国浙江杭州
47.96.187.88        中国浙江杭州
47.96.190.247        中国浙江杭州
47.96.230.176        中国浙江杭州
47.96.239.150        中国浙江杭州
47.96.73.71        中国浙江杭州
47.97.156.215        中国浙江杭州
47.97.199.69        中国浙江杭州
47.98.137.182        中国浙江杭州
47.98.183.118        中国浙江杭州
47.98.202.60        中国浙江杭州
47.98.37.136        中国浙江杭州
47.98.39.122        中国浙江杭州
47.98.52.118        中国浙江杭州
47.99.168.142        中国浙江杭州
47.99.56.98        中国浙江杭州
47.99.62.21        中国浙江杭州
47.99.66.161        中国浙江杭州
47.99.68.90        中国浙江杭州
58.100.34.78        中国浙江杭州
60.12.8.166        中国浙江杭州
60.176.19.48        中国浙江杭州
60.186.116.233        中国浙江杭州
60.191.90.242        中国浙江杭州

云函数&上线地址

[*]service-5dttvfnl-1253933974.sh.apigw.tencentcs.com
[*]service-5i1a3h4c-1312402023.gz.apigw.tencentcs.com
[*]service-dxkujbtv-1305051246.sh.apigw.tencentcs.com
[*]service-k6z1uk8b-1307545782.sh.apigw.tencentcs.com

金山WPS RCE
wps影响范围为:


[*]WPS Office 2023 个人版 < 11.1.0.15120
[*]WPS Office 2019 企业版 < 11.8.2.12085

POC

**** Hidden Message *****
泛微 Weaver E-Office9 前台文件包含
POC

**** Hidden Message *****
通达OA (CVE-2023-4166)
描述-影响范围:通达OA版本11.10之前

POC

post请求包

**** Hidden Message *****

carina 发表于 2023-8-9 23:40:06

手动点赞{:1_459:}

jiabo 发表于 2023-8-9 23:48:49

感谢分享

lcz852499839 发表于 2023-8-10 08:45:56

666666666666666666666666666666666666

hhh 发表于 2023-8-10 09:08:53

66666666666

dmily 发表于 2023-8-10 09:49:48

维护网络安全人人有责,祖国统计,世界和平

idyork 发表于 2023-8-10 09:49:55

6666666666

joke_tql 发表于 2023-8-10 14:55:37

感谢分享

hackms 发表于 2023-8-11 17:38:15

{:1_453:}谢谢分享

nihao 发表于 2023-8-11 17:42:08

123123123123
页: [1] 2
查看完整版本: 情报共享 (8.9)