当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2015-0160844

漏洞标题:中国移动某云盘官网服务器Getshell

相关厂商:中国移动

漏洞作者: 朱元璋

提交时间:2015-12-13 12:22

修复时间:2016-01-28 17:10

公开时间:2016-01-28 17:10

漏洞类型:系统/服务补丁不及时

危害等级:高

自评Rank:15

漏洞状态:已交由第三方合作机构(cncert国家互联网应急中心)处理

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2015-12-13: 细节已通知厂商并且等待厂商处理中
2015-12-17: 厂商已经确认,细节仅向厂商公开
2015-12-27: 细节向核心白帽子及相关领域专家公开
2016-01-06: 细节向普通白帽子公开
2016-01-16: 细节向实习白帽子公开
2016-01-28: 细节向公众公开

简要描述:

详细说明:

http://**.**.**.**/login

0.png


链接地址http://**.**.**.**/wap/user!forgetPwd.action存在命令执行漏洞

00.png


直接上传木马到服务器

1.jpg

2.jpg

a.png


进木马有时会显示404,是因为有防护机制,多打开几次就能打开了!

漏洞证明:

[/opt/tools/t_pan_Minor/webapps/pan/css/]$ whoami
fz
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/passwd
Run command [cat /etc/passwd] failed!
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/passwd
root:x:0:0:root:/root:/bin/bash
daemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin
bin:x:2:2:bin:/bin:/usr/sbin/nologin
sys:x:3:3:sys:/dev:/usr/sbin/nologin
sync:x:4:65534:sync:/bin:/bin/sync
games:x:5:60:games:/usr/games:/usr/sbin/nologin
man:x:6:12:man:/var/cache/man:/usr/sbin/nologin
lp:x:7:7:lp:/var/spool/lpd:/usr/sbin/nologin
mail:x:8:8:mail:/var/mail:/usr/sbin/nologin
news:x:9:9:news:/var/spool/news:/usr/sbin/nologin
uucp:x:10:10:uucp:/var/spool/uucp:/usr/sbin/nologin
proxy:x:13:13:proxy:/bin:/usr/sbin/nologin
www-data:x:33:33:www-data:/var/www:/usr/sbin/nologin
backup:x:34:34:backup:/var/backups:/usr/sbin/nologin
list:x:38:38:Mailing List Manager:/var/list:/usr/sbin/nologin
irc:x:39:39:ircd:/var/run/ircd:/usr/sbin/nologin
gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/usr/sbin/nologin
nobody:x:65534:65534:nobody:/nonexistent:/usr/sbin/nologin
libuuid:x:100:101::/var/lib/libuuid:/bin/sh
syslog:x:101:103::/home/syslog:/bin/false
messagebus:x:102:105::/var/run/dbus:/bin/false
landscape:x:103:108::/var/lib/landscape:/bin/false
sshd:x:104:65534::/var/run/sshd:/usr/sbin/nologin
fz:x:1000:1000:fz,,,:/home/fz:/bin/bash
ntp:x:105:113::/home/ntp:/bin/false
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ ifconfig
eth0 Link encap:Ethernet HWaddr 54:89:98:00:b2:0b
inet addr:**.**.**.** Bcast:**.**.**.** Mask:**.**.**.**
inet6 addr: fe80::5689:98ff:fe00:b20b/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:1396691344 errors:0 dropped:2451 overruns:0 frame:0
TX packets:1409355184 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:842990043821 (842.9 GB) TX bytes:620317915434 (620.3 GB)
lo Link encap:Local Loopback
inet addr:**.**.**.** Mask:**.**.**.**
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:65536 Metric:1
RX packets:127139377 errors:0 dropped:0 overruns:0 frame:0
TX packets:127139377 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:481852558525 (481.8 GB) TX bytes:481852558525 (481.8 GB)
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/resolv.conf
# Dynamic resolv.conf(5) file for glibc resolver(3) generated by resolvconf(8)
# DO NOT EDIT THIS FILE BY HAND -- YOUR CHANGES WILL BE OVERWRITTEN
nameserver **.**.**.**
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ bash prompt:
Run command [bash prompt:] failed!
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ bash prompt:
bash: prompt:: No such file or directory
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ lsb_release -a
Distributor ID: Ubuntu
Description: Ubuntu 14.04.1 LTS
Release: 14.04
Codename: trusty
No LSB modules are available.
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ arp -a
localhost (**.**.**.**) at 54:89:98:73:56:a8 [ether] on eth0
computer-j11-3 (**.**.**.**) at 80:fb:06:b1:82:71 [ether] on eth0
computer-j11-4 (**.**.**.**) at 54:89:98:02:5e:92 [ether] on eth0
computer-j7-1 (**.**.**.**) at 54:89:98:00:b2:4d [ether] on eth0
localhost (**.**.**.**) at c4:ca:d9:4d:41:00 [ether] on eth0
localhost (**.**.**.**) at 54:89:98:02:5e:71 [ether] on eth0
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ netstat -ano
Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address Foreign Address State Timer
tcp 0 0 **.**.**.**:80 **.**.**.**:* LISTEN off (0.00/0/0)
tcp 0 0 **.**.**.**:28017 **.**.**.**:* LISTEN off (0.00/0/0)
tcp 0 0 **.**.**.**:22 **.**.**.**:* LISTEN keepalive (0.00/0/0)
tcp 0 0 **.**.**.**:22 **.**.**.**:47955 SYN_RECV on (0.87/0/0)
tcp 0 0 **.**.**.**:8100 **.**.**.**:* LISTEN off (0.00/0/0)
tcp 0 0 **.**.**.**:27017 **.**.**.**:* LISTEN off (0.00/0/0)
tcp 0 0 **.**.**.**:22 **.**.**.**:33493 ESTABLISHED keepalive (1200.00/0/0)
tcp 0 0 **.**.**.**:52358 **.**.**.**:8081 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:15617 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:60773 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:22 **.**.**.**:33489 ESTABLISHED keepalive (1200.00/0/0)
tcp 0 1 **.**.**.**:59534 **.**.**.**:48909 SYN_SENT on (0.19/3/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:5613 FIN_WAIT2 timewait (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:44163 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:7293 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:27017 **.**.**.**:48590 ESTABLISHED keepalive (21.88/0/0)
tcp 0 0 **.**.**.**:27017 **.**.**.**:41351 ESTABLISHED keepalive (208.76/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:60774 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:24228 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:38466 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:24229 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:27017 **.**.**.**:41761 ESTABLISHED keepalive (202.62/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:15411 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:9695 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:51878 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:5431 **.**.**.**:27017 ESTABLISHED keepalive (281.47/0/0)
tcp 0 0 **.**.**.**:52367 **.**.**.**:8081 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:8100 **.**.**.**:27728 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:26333 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:22 **.**.**.**:33488 ESTABLISHED keepalive (1200.00/0/0)
tcp 0 0 **.**.**.**:48590 **.**.**.**:27017 ESTABLISHED keepalive (21.88/0/0)
tcp 0 0 **.**.**.**:65222 **.**.**.**:3001 ESTABLISHED keepalive (260.99/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:51879 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:80 **.**.**.**:15618 ESTABLISHED off (0.00/0/0)
tcp 0 0 **.**.**.**:8100 **.**.**.**:27706 ESTABLISHED off (0.00/0/0)
tcp6 0 0 :::8080 :::* LISTEN off (0.00/0/0)
tcp6 0 0 :::8081 :::* LISTEN off (0.00/0/0)
tcp6 0 0 :::22 :::* LISTEN off (0.00/0/0)
tcp6 0 0 **.**.**.**:8005 :::* LISTEN off (0.00/0/0)
tcp6 0 0 **.**.**.**:8006 :::* LISTEN off (0.00/0/0)
tcp6 0 0 :::8009 :::* LISTEN off (0.00/0/0)
tcp6 0 0 :::8010 :::* LISTEN off (0.00/0/0)
tcp6 0 0 **.**.**.**:35574 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6355 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35833 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64969 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:26280 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14935 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:40366 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64499 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21617 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65213 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20323 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19644 **.**.**.**:80 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20764 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19027 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18374 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:15396 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:55003 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8542 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:29605 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17045 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:61651 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:52225 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17941 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:40367 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10192 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18265 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23941 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23386 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35025 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:4654 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14924 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:46089 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65211 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19041 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21073 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6406 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:40919 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20967 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21530 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19366 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23121 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:16340 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17718 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:15183 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:28538 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:12175 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21529 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9562 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23803 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18144 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20074 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23791 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:49631 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:30402 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14678 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65345 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17577 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:26020 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18047 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21140 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18098 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:16369 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17958 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:43062 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19390 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:51935 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:46045 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20144 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20357 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22564 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19382 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10437 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:61641 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34288 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:16355 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21945 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:28604 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:62316 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:46602 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:28006 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:50922 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23226 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:49851 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:48700 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22970 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19107 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38982 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65212 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5507 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:33309 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34966 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10673 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6887 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18338 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34812 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 1 0 **.**.**.**:8081 **.**.**.**:33616 CLOSE_WAIT off (0.00/0/0)
tcp6 0 0 **.**.**.**:16328 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:24624 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23275 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34638 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:36767 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:30943 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:47132 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9388 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23115 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17975 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38806 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22241 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:55254 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19398 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:43016 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34532 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20795 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23791 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14942 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10086 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8544 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38314 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18398 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17890 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6837 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:30383 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23823 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23885 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9838 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21171 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8595 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:53266 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5124 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:49047 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20520 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:27653 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20743 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20774 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64670 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5522 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:58177 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38953 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17092 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:7408 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31033 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23779 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23118 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22809 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23225 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65214 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21125 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65215 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:32881 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:47893 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21150 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:36338 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10373 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35694 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:37268 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:53482 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20750 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:63684 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:63541 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38170 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21216 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34766 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:29631 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10886 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18230 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34561 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31337 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14857 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6812 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:16420 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34881 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23792 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:25527 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17939 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17390 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31929 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:37909 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6518 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31783 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:13929 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5523 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:36773 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:40297 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:27728 **.**.**.**:8100 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31552 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:61471 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35937 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:63689 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8083 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31749 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:7168 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38966 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34366 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:12991 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9859 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:34737 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:12164 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10197 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:29796 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:26820 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19381 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19009 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35910 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10837 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9470 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:27706 **.**.**.**:8100 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19529 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21139 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:26302 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9839 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:12367 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14852 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5505 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35777 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65216 **.**.**.**:3001 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:24754 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23769 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21581 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20729 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:27669 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8081 **.**.**.**:52358 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:61291 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:31973 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:2871 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20246 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21720 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21807 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9311 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:11112 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19780 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:43953 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:2870 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6878 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19389 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21074 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35849 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18032 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:28818 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:32649 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:32825 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:13702 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:62277 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:13930 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18139 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18502 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20659 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20794 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19535 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20727 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:6316 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:47731 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64500 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:40942 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:9389 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:15327 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5511 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19051 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20763 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19367 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:33744 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8549 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17956 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21124 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:7808 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22720 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18121 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:22182 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21209 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14854 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19024 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20192 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14855 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:8081 **.**.**.**:52367 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10083 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:46006 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:38391 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21170 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64320 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35791 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:10381 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17958 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23822 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:60512 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:53506 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:35001 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:25270 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:32125 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:26382 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:17896 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:24249 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:65306 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20966 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19449 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:33121 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:44103 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:30827 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:15325 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20768 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:32820 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:21427 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:15193 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:23772 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:50477 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:20092 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:64863 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:29375 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:24376 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19528 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19837 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5520 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:18009 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:19368 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:14872 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:2201 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
tcp6 0 0 **.**.**.**:5509 **.**.**.**:27017 ESTABLISHED off (0.00/0/0)
udp 0 0 **.**.**.**:123 **.**.**.**:* off (0.00/0/0)
udp 0 0 **.**.**.**:123 **.**.**.**:* off (0.00/0/0)
udp 0 0 **.**.**.**:123 **.**.**.**:* off (0.00/0/0)
udp6 0 0 ::1:123 :::* off (0.00/0/0)
udp6 0 0 fe80::5689:98ff:fe0:123 :::* off (0.00/0/0)
udp6 0 0 :::123 :::* off (0.00/0/0)
Active UNIX domain sockets (servers and established)
Proto RefCnt Flags Type State I-Node Path
unix 2 [ ACC ] STREAM LISTENING 22761 /tmp/OSL_PIPE_1000_SingleOfficeIPC_b95346bb877b9dabd3a8d8afd40bda0
unix 2 [ ACC ] STREAM LISTENING 687 /tmp/mongodb-27017.sock
unix 2 [ ACC ] STREAM LISTENING 554 /var/run/dbus/system_bus_socket
unix 2 [ ACC ] STREAM LISTENING 15118262 @/com/ubuntu/upstart
unix 2 [ ACC ] SEQPACKET LISTENING 15121573 /run/udev/control
unix 7 [ ] DGRAM 15121648 /dev/log
unix 3 [ ] STREAM CONNECTED 15103682 @/com/ubuntu/upstart
unix 3 [ ] STREAM CONNECTED 160157427
unix 3 [ ] STREAM CONNECTED 15120587
unix 3 [ ] STREAM CONNECTED 1397
unix 3 [ ] STREAM CONNECTED 15118263
unix 3 [ ] STREAM CONNECTED 1399
unix 3 [ ] STREAM CONNECTED 1396
unix 3 [ ] STREAM CONNECTED 15118267 @/com/ubuntu/upstart
unix 2 [ ] DGRAM 160164433
unix 3 [ ] STREAM CONNECTED 160154624
unix 3 [ ] STREAM CONNECTED 15118658 /var/run/dbus/system_bus_socket
unix 2 [ ] DGRAM 15121734
unix 2 [ ] DGRAM 160164436
unix 3 [ ] STREAM CONNECTED 15121749
unix 3 [ ] STREAM CONNECTED 15109667
unix 3 [ ] STREAM CONNECTED 160153140
unix 3 [ ] STREAM CONNECTED 160157428
unix 2 [ ] STREAM CONNECTED 725
unix 3 [ ] STREAM CONNECTED 15118268 @/com/ubuntu/upstart
unix 3 [ ] DGRAM 15060860
unix 3 [ ] STREAM CONNECTED 1343
unix 3 [ ] STREAM CONNECTED 1344
unix 2 [ ] DGRAM 15109679
unix 3 [ ] STREAM CONNECTED 160153139
unix 2 [ ] DGRAM 160158165
unix 2 [ ] STREAM CONNECTED 15128589
unix 3 [ ] DGRAM 15060859
unix 3 [ ] STREAM CONNECTED 1398
unix 2 [ ] DGRAM 15623
unix 3 [ ] STREAM CONNECTED 15121570
unix 3 [ ] STREAM CONNECTED 15072102 /var/run/dbus/system_bus_socket
unix 3 [ ] STREAM CONNECTED 160167937
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ route
Run command [route] failed!
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ route
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
default localhost **.**.**.** UG 0 0 0 eth0
**.**.**.** * **.**.**.** U 0 0 0 eth0
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ lsb_release -a
Distributor ID: Ubuntu
Description: Ubuntu 14.04.1 LTS
Release: 14.04
Codename: trusty
No LSB modules are available.
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/issue
Run command [cat /etc/issue] failed!
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/issue
Run command [cat /etc/issue] failed!
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ cat /etc/issue
Ubuntu 14.04.1 LTS \n \l
[/opt/tools/t_pan_Minor/webapps/pan/css/]$ file /sbin/init
/sbin/init: ELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.24, BuildID[sha1]=7a4c688d009fc1f06ffc692f5f42ab09e68582b2, stripped
[/opt/tools/t_pan_Minor/webapps/pan/css/]$

修复方案:

加强安全意识

版权声明:转载请注明来源 朱元璋@乌云


漏洞回应

厂商回应:

危害等级:高

漏洞Rank:12

确认时间:2015-12-17 09:09

厂商回复:

CNVD确认并复现所述情况,已经转由CNCERT向中国移动集团公司通报,由其后续协调网站管理部门处置。

最新状态:

暂无