Danfoss SCADA²úÆ·¶à¸öÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-09-09¡ñÎó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºÔÝÎÞ£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
Danfoss SCADA AK-EM 800²úÆ·
¡ñÎó²î¸ÅÊö
Ñо¿Ö°Ô±ÔÚDanfoss SCADA²úÆ·Öз¢Ã÷ÁËÁ½¸öÑÏÖØÎó²î¡£
Ò»¸öÊÇÏÖʵÉϾßÓиßȨÏÞ¹¦Ð§µÄÖÎÀíÈí¼þµÄºóÃÅ¡£ËäÈ»½¨ÉèÕâ¸öºóÃÅ¿ÉÄÜÊÇΪÁË×ÊÖú¹©Ó¦É̵ÄÖ§³ÖÍŶӵǼϵͳÀ´ÐÖúËûÃǵĿͻ§£¬µ«ÃÜÂë¿ÉÒÔºÜÈÝÒ׵ر»¹¥»÷ÕßÆÆ½â¡£×ÝÈ»ÃÜÂ뱬·¢×ª±ä£¬Risk Based SecurityµÄÑо¿ÍŶÓÒ²Äܹ»±àдһ¸ö³ÌÐò£¬ÔÚÈκθø×¼Ê±¼äÌìÉú׼ȷµÄÃÜÂë¡£Ò»µ©ÒÔÕâÖÖ·½·¨»ñµÃ»á¼û£¬¹¥»÷Õ߾ͿÉÒÔÖ´ÐÐÖݪֲÙ×÷£¬°üÀ¨ÔڵײãÊý¾Ý¿âÖйûÕæºÍʹÓÃÊý¾Ý£¬»òÕßÖØÖó¬µÈÖÎÀíÔ±µÄÃÜÂ룬ȻºóÔÚ¾ßÓÐÍêȫȨÏÞµÄÕÊ»§ÏµÇ¼¡£
ÁíÒ»¸öÑÏÖØÎó²îÊǵ±»á¼ûС·þÎñ³ÌÐòʱȱÉÙÔÊÐí¼ì²é£¬ÔÊÐíÖ´ÐÐÃô¸ÐµÄÊý¾Ý¿âÅÌÎÊ£¬ÀýÈ磬¹ûÕæÓû§ÃûºÍÃÜÂë¡£
¡ñÎó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£
¡ñÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬ÏÂÔØÁ´½Ó£ºhttps://www.danfoss.com/en/service-and-support/downloads/dcs/adap-kool-software/ak-em-800/#tab-overview¡£
¡ñ²Î¿¼Á´½Ó
https://www.helpnetsecurity.com/2019/09/05/danfoss-scada-vulnerabilities/


¾©¹«Íø°²±¸11010802024551ºÅ