¡¾Â©¶´Í¨¸æ¡¿D-Link DIR-3040·ÓÉÆ÷¶à¸öÄþ¾²Â©¶´
Ðû²¼Ê±¼ä 2021-07-190x00 ©¶´¸ÅÊö
2021Äê7ÔÂ15ÈÕ£¬Cisco Talos µÄÑо¿ÈËÔ±¹ûÈ»Åû¶ÁËD-Link DIR-3040·ÓÉÆ÷ÖеĶà¸öÄþ¾²Â©¶´£¬¹¥»÷Õß¿ÉÒÔÀûÓÃÕâЩ©¶´ÔÚÊÜÓ°ÏìµÄ·ÓÉÆ÷ÉÏÖ´ÐÐÈÎÒâ´úÂë¡¢·ÃÎÊÃô¸ÐÐÅÏ¢»òµ¼ÖÂÉ豸Í߽⡣ĿǰÕâЩ©¶´µÄPoCÒѾ¹ûÈ»¡£
0x01 ©¶´ÏêÇé
DIR-3040 ÊÇ»ùÓÚ AC3000 µÄÎÞÏß»¥ÁªÍøÂ·ÓÉÆ÷¡£Cisco Talos±¾´ÎÅû¶µÄ©¶´°üÂÞ£º
l CVE-2021-21816 £ºSyslog ÐÅϢй¶©¶´£¬CVSSÆÀ·ÖΪ6.5¡£
l CVE-2021-21817 £ºZebra IP ·ÓɹÜÀíÆ÷ÐÅϢй¶©¶´£¬CVSSÆÀ·ÖΪ7.5¡£
l CVE-2021-21818 £ºZebra IP ·ÓɹÜÀíÆ÷Ó²±àÂëÃÜÂë©¶´£¬CVSSÆÀ·ÖΪ7.5¡£
l CVE-2021-21819 £ºLibcli ÃüÁî×¢Èë©¶´£¬CVSSÆÀ·ÖΪ9.1¡£
l CVE-2021-21820 £ºLibcli ²âÊÔ»·¾³Ó²±àÂëÃÜÂë©¶´£¬CVSSÆÀ·ÖΪ10.0¡£
ÆäÖУ¬CVE-2021-21816ºÍCVE-2021-21817ΪÐÅϢй¶©¶´£¬¿Éͨ¹ý¶ñÒâÍøÂçÇëÇó´¥·¢£¬ÀÖ³ÉÀûÓÿÉÒÔ¼ì²ìÉ豸µÄϵͳÈÕÖ¾£»CVE-2021-21819©¶´¿ÉÄܵ¼ÖÂÈÎÒâÃüÁîÖ´ÐУ¬¹¥»÷Õß¿ÉÒÔͨ¹ý·¢ËÍһϵÁÐÇëÇóÀ´´¥·¢´Ë©¶´¡£
CVE-2021-21818ºÍCVE-2021-21820¶¼ÎªÓ²±àÂëÃÜÂë©¶´£¬µ«Ó°Ïì²îÒ죬ǰÕß¿ÉÄܵ¼Ö¾ܾø·þÎñ£¬ºóÕß¿ÉÄܵ¼Ö¹¥»÷ÕßÔÚ·ÓÉÆ÷ÉÏÖ´ÐдúÂë¡£
½ØÖ¹Ä¿Ç°£¬Í¨¹ýZoomEeyËÑË÷£¬È«Çò·¶Î§ÄÚ¹²ËÑË÷µ½20911305¸öD-Link DIR-3040Ïà¹ØµÄÉ豸£¬ÆäÖÐÖйúλÁеÚÒ»£¬¹úÄÚÂþÑÜ×î¶àµÄΪ¸£½¨Ê¡¡£
Ó°Ï췶Χ
D-Link DIR-3040 ¹Ì¼þ <= v1.13B03
0x02 ´¦Öý¨Òé
ĿǰÕâЩ©¶´ÒѾÐÞ¸´£¬½¨Ò鼰ʱӦÓÃD-Link DIR-3040 v1.13B03 ²¹¶¡¡£
ÏÂÔØÁ´½Ó£º
https://support.dlink.com/resource/SECURITY_ADVISEMENTS/DIR-3040/REVA/DIR-3040_REVA_FIRMWARE_v1.13B03_HOTFIX.zip
0x03 ²Î¿¼Á´½Ó
https://blog.talosintelligence.com/2021/07/vuln-spotlight-d-link.html
https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10228
https://www.bleepingcomputer.com/news/security/d-link-issues-hotfix-for-hard-coded-password-router-vulnerabilities/
0x04 ¸üа汾
°æ±¾ | ÈÕÆÚ | ÐÞ¸ÄÄÚÈÝ |
V1.0 | 2021-07-19 | Ê×´ÎÐû²¼ |
0x05 Îĵµ¸½Â¼
CNVD£ºwww.cnvd.org.cn
CNNVD£ºwww.cnnvd.org.cn
CVE£ºcve.mitre.org
NVD£ºnvd.nist.gov
CVSS£ºwww.first.org
0x06 ¹ØÓÚ¶¶È¦Îª¶Ä¶øÉú
¹Ø×¢ÒÔϹ«Öںţ¬»ñÈ¡¸ü¶à×ÊѶ£º