当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2016-0169979

漏洞标题:多处地址存在飞塔后门

相关厂商:Fortinet

漏洞作者: 路人甲

提交时间:2016-01-18 16:50

修复时间:2016-02-27 11:49

公开时间:2016-02-27 11:49

漏洞类型:系统/服务运维配置不当

危害等级:高

自评Rank:20

漏洞状态:厂商已经确认

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2016-01-18: 细节已通知厂商并且等待厂商处理中
2016-01-18: 厂商已经确认,细节仅向厂商公开
2016-01-28: 细节向核心白帽子及相关领域专家公开
2016-02-07: 细节向普通白帽子公开
2016-02-17: 细节向实习白帽子公开
2016-02-27: 细节向公众公开

简要描述:

飞塔后门

详细说明:

最新爆出来的漏洞 批量验证
下面这些地址均受影响

41.159.55.35 
193.85.7.35
14.139.110.51
74.94.47.178
212.156.31.54
70.109.255.158
201.101.20.244
165.228.5.114
111.93.74.174
196.41.106.115
68.115.219.26
105.228.65.0
195.31.90.186
187.6.109.115
186.67.201.61
75.102.170.81
37.128.120.130
195.235.120.147
210.196.188.145
74.142.206.3
67.52.249.198
119.73.242.202
67.55.155.134
165.228.85.119
75.138.138.46
80.86.150.90
119.226.247.121
181.48.191.222
187.4.50.90
202.191.230.174
104.207.192.18
92.243.33.18
175.140.136.73
123.209.249.115
62.116.231.29
65.101.115.5
50.160.53.54
96.38.8.118
104.11.118.129
204.191.109.249
62.110.69.162
74.93.63.13
174.78.151.3
69.141.145.233
201.234.71.7
122.164.12.136
41.215.79.118
118.82.32.206
115.111.248.20
100.3.213.162
200.142.99.38
200.116.205.130
41.168.18.73
14.139.111.245
173.71.60.66
201.157.127.2
85.252.94.229
66.236.152.138
190.153.240.218
221.213.46.214
195.39.143.90
88.250.168.224
223.30.94.178
59.124.154.217
59.124.207.150
223.30.96.169
223.30.134.25
122.0.25.106
122.49.225.98
173.165.67.105
41.38.117.170
62.177.176.50
187.147.155.131
209.194.9.210
217.115.48.172
201.109.21.24
101.231.39.146
97.87.94.134
24.149.114.9
108.16.207.59
213.254.19.130
8.30.124.132
190.106.10.114
93.62.247.234
175.145.236.174
190.129.10.42
109.1.238.238
195.39.30.61
217.92.58.205
78.188.48.2
83.192.56.129
184.60.128.66
80.120.138.74
134.255.188.58
80.122.102.90
220.255.120.228
223.30.80.206
110.142.158.52
195.175.89.194
212.210.36.34
24.103.226.154
110.142.86.195
223.30.161.86
94.200.181.206
94.200.240.90
185.12.99.124
203.192.37.42


屏幕快照 2016-01-14 下午8.09.38.png


屏幕快照 2016-01-14 下午8.10.30.png


屏幕快照 2016-01-14 下午8.13.49.png


漏洞证明:

屏幕快照 2016-01-14 下午8.09.38.png


屏幕快照 2016-01-14 下午8.10.30.png


屏幕快照 2016-01-14 下午8.13.49.png


修复方案:

升级高版本

版权声明:转载请注明来源 路人甲@乌云


漏洞回应

厂商回应:

危害等级:高

漏洞Rank:12

确认时间:2016-01-18 19:07

厂商回复:

最新状态:

暂无