¡¾Â©¶´Í¨¸æ¡¿SonicWall Analytics Ô¶³Ì´úÂëÖ´ÐЩ¶´ (CVE-2021-20032)
Ðû²¼Ê±¼ä 2021-08-170x00 ©¶´¸ÅÊö
CVE ID | CVE-2021-20032 | ʱ ¼ä | 2021-08-10 |
Àà ÐÍ | RCE | µÈ ¼¶ | ÑÏÖØ |
Ô¶³ÌÀûÓà | ÊÇ | Ó°Ï췶Χ | |
¹¥»÷ÅÓ´ó¶È | ¿ÉÓÃÐÔ | ||
Óû§½»»¥ | ËùÐèȨÏÞ | ||
PoC/EXP | δ¹ûÈ» | ÔÚÒ°ÀûÓà | ·ñ |
0x01 ©¶´ÏêÇé
SonicWALL Analyzer ÊÇSonicWALLÍÆ³öµÄÓ¦ÓÃÁ÷Á¿·ÖÎö½â¾ö·½°¸Ö®Ò»£¬Ö§³ÖSonicWALL·À»ðǽµÈ²úÎï¡£AnalyzerÖ÷ҪΪIT¹ÜÀíÈËÔ±ÌṩʵʱºÍÀúÊ·Ó¦ÓÃÁ÷Á¿·ÖÎöÓëÄþ¾²Ê¼þ³ÂËߣ¬´Ó¶øÊ¹Æä¾ß±¸ÉîÈë·ÖÎöÍøÂçÐÔÄÜÓëÄþ¾²µÄÄÜÁ¦¡£
2021Äê8ÔÂ17ÈÕ£¬SonicWALLÐû²¼Äþ¾²Í¨¸æ£¬ÐÞ¸´ÁËSonicWall AnalyticsÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2021-20032£©£¬ÆäCVSSv3ÆÀ·ÖΪ9.8¡£
ÓÉÓÚSonicWall Analytics On-Prem£¨µ±µØ£©µÄijЩ°æ±¾ÖÐJava Debug Wire Protocol£¨JWDP£©½Ó¿ÚÄþ¾²ÅäÖôíÎó£¬Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓôË©¶´ÔÚϵͳÉÏÖ´ÐÐÈÎÒâ´úÂë¡£
Ó°Ï췶Χ
Analytics On-Prem <= 2.5.2518
0x02 ´¦Öý¨Òé
Ŀǰ´Ë©¶´ÒѾÐÞ¸´¡£½¨ÒéÊÜÓ°ÏìÓû§¼°Ê±Éý¼¶¸üе½Analytics On-Prem 2.5.2519 »ò¸ü¸ß°æ±¾¡£
ÁÙʱ»º½â´ëÊ©
×èÖ¹¶ÔÊÜÓ°Ïì°æ±¾ÉϵÄ9000/TCP¶Ë¿ÚµÄ·ÃÎÊ¡£
×¢£ºSonicWall Analytics 2.5 ¼°¸üÔç°æ±¾µÄ²¿ÊðÊǵ±µØ²¿Êð£¬Ó¦Î»ÓÚÄÚ²¿Äþ¾²ÍøÂç·Ö¶ÎÖС£
ÏÂÔØÁ´½Ó£º
https://mysonicwall.com/
0x03 ²Î¿¼Á´½Ó
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0018
https://www.sonicwall.com/support/product-notification/?sol_id=210809113238240
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-20032
0x04 ¸üа汾
°æ±¾ | ÈÕÆÚ | ÐÞ¸ÄÄÚÈÝ |
V1.0 | 2021-08-17 | Ê×´ÎÐû²¼ |
0x05 Îĵµ¸½Â¼
CNVD£ºwww.cnvd.org.cn
CNNVD£ºwww.cnnvd.org.cn
CVE£ºcve.mitre.org
NVD£ºnvd.nist.gov
CVSS£ºwww.first.org
0x06 ¹ØÓÚ¶¶È¦Îª¶Ä¶øÉú
¹Ø×¢ÒÔϹ«Öںţ¬»ñÈ¡¸ü¶à×ÊѶ£º