漏洞概要 关注数(24) 关注此漏洞
>
漏洞详情
披露状态:
2015-04-25: 细节已通知厂商并且等待厂商处理中
2015-04-27: 厂商已经确认,细节仅向厂商公开
2015-05-07: 细节向核心白帽子及相关领域专家公开
2015-05-17: 细节向普通白帽子公开
2015-05-27: 细节向实习白帽子公开
2015-06-11: 细节向公众公开
简要描述:
11
详细说明:
利用k8无法继续执行其他命令,怀疑是被阻断了,只能换一种包获取信息
whoami
ip信息
端口信息
Proto Local Address Foreign Address State
TCP 0.0.0.0:135 0.0.0.0:0 LISTENING
TCP 0.0.0.0:445 0.0.0.0:0 LISTENING
TCP 0.0.0.0:1039 0.0.0.0:0 LISTENING
TCP 0.0.0.0:5800 0.0.0.0:0 LISTENING
TCP 0.0.0.0:5900 0.0.0.0:0 LISTENING
TCP 10.1.5.45:139 0.0.0.0:0 LISTENING
TCP 10.1.5.45:1257 10.1.6.120:8014 ESTABLISHED
TCP 10.1.5.45:1266 1.2.3.4:82 SYN_SENT
TCP 10.1.5.45:4973 10.1.34.26:1521 ESTABLISHED
TCP 10.1.5.45:4981 10.1.34.27:1521 ESTABLISHED
TCP 10.1.5.45:7001 0.0.0.0:0 LISTENING
TCP 10.1.5.45:7001 10.1.8.44:3093 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:7242 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:7848 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:8443 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:11147 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:11763 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:14374 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:15477 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:16646 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:17111 FIN_WAIT_2
TCP 10.1.5.45:7001 10.1.8.44:22155 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:24719 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:27827 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:28576 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:28994 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:29108 FIN_WAIT_2
TCP 10.1.5.45:7001 10.1.8.44:35481 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:35804 ESTABLISHED
TCP 10.1.5.45:7001 10.1.8.44:42587 TIME_WAIT
TCP 10.1.5.45:7001 10.1.8.44:45041 FIN_WAIT_2
net user
Administrator Guest SUPPORT_388945a0
}���
漏洞证明:
如上
修复方案:
11
版权声明:转载请注明来源 路人甲@乌云
>
漏洞回应
厂商回应:
危害等级:高
漏洞Rank:14
确认时间:2015-04-27 09:23
厂商回复:
我们会尽快修复该漏洞,多谢
最新状态:
暂无