当前位置:WooYun >> 漏洞信息

漏洞概要 关注数(24) 关注此漏洞

缺陷编号:wooyun-2016-0211108

漏洞标题:中国杭州网站被入侵传播非法消息

相关厂商:中国杭州政府门户网站

漏洞作者: FYX

提交时间:2016-05-21 11:30

修复时间:2016-07-08 11:50

公开时间:2016-07-08 11:50

漏洞类型:恶意信息传播

危害等级:中

自评Rank:6

漏洞状态:已交由第三方合作机构(cncert国家互联网应急中心)处理

漏洞来源: http://www.wooyun.org,如有疑问或需要帮助请联系 [email protected]

Tags标签:

4人收藏 收藏
分享漏洞:


漏洞详情

披露状态:

2016-05-21: 细节已通知厂商并且等待厂商处理中
2016-05-24: 厂商已经确认,细节仅向厂商公开
2016-06-03: 细节向核心白帽子及相关领域专家公开
2016-06-13: 细节向普通白帽子公开
2016-06-23: 细节向实习白帽子公开
2016-07-08: 细节向公众公开

简要描述:

中共杭州市委、杭州市人民政府主办 杭州市人民政府电子政务办公室建设管理

详细说明:

网址:http://**.**.**.**/


1.png


这是正常的首页。可是,网站中的某些页面,可就不正常了。下面放点截图。

2.png


链接:http://**.**.**.**/art/2016/5/13/art_812270_719011.html

3.png


链接:http://**.**.**.**/art/2016/5/20/art_812270_736179.html
以及其他许多。
同时还发现,网站查看源代码后,正常代码下方存在超多链接,试了一下,都是博彩广告页面。有时候点击会出现404页面,多刷新几次的话是可以打开的。

4.png


5.png

漏洞证明:

1.png


2.png


3.png


4.png


5.png


然后再贴部分链接,是从网站源代码中拷出来的。

<a href='/art/2016/5/20/art_812270_721455.html'></a>
<a href='/art/2016/5/20/art_812270_721461.html'></a>
<a href='/art/2016/5/20/art_812270_721467.html'></a>
<a href='/art/2016/5/20/art_812270_721473.html'></a>
<a href='/art/2016/5/20/art_812270_721479.html'></a>
<a href='/art/2016/5/20/art_812270_721485.html'></a>
<a href='/art/2016/5/20/art_812270_721491.html'></a>
<a href='/art/2016/5/20/art_812270_721497.html'></a>
<a href='/art/2016/5/20/art_812270_721503.html'></a>
<a href='/art/2016/5/20/art_812270_721509.html'></a>
<a href='/art/2016/5/20/art_812270_721515.html'></a>
<a href='/art/2016/5/20/art_812270_721521.html'></a>
<a href='/art/2016/5/20/art_812270_721527.html'></a>
<a href='/art/2016/5/20/art_812270_721533.html'></a>
<a href='/art/2016/5/20/art_812270_721539.html'></a>
<a href='/art/2016/5/20/art_812270_721545.html'></a>
<a href='/art/2016/5/20/art_812270_721551.html'></a>
<a href='/art/2016/5/20/art_812270_721557.html'></a>
<a href='/art/2016/5/20/art_812270_721563.html'></a>
<a href='/art/2016/5/20/art_812270_721569.html'></a>
<a href='/art/2016/5/20/art_812270_721575.html'></a>
<a href='/art/2016/5/20/art_812270_721581.html'></a>
<a href='/art/2016/5/20/art_812270_721587.html'></a>
<a href='/art/2016/5/20/art_812270_721593.html'></a>
<a href='/art/2016/5/20/art_812270_721599.html'></a>
<a href='/art/2016/5/20/art_812270_721605.html'></a>
<a href='/art/2016/5/20/art_812270_721611.html'></a>
<a href='/art/2016/5/20/art_812270_721617.html'></a>
<a href='/art/2016/5/20/art_812270_721623.html'></a>
<a href='/art/2016/5/20/art_812270_721629.html'></a>
<a href='/art/2016/5/20/art_812270_721635.html'></a>
<a href='/art/2016/5/20/art_812270_721641.html'></a>
<a href='/art/2016/5/20/art_812270_721647.html'></a>
<a href='/art/2016/5/20/art_812270_721653.html'></a>
<a href='/art/2016/5/20/art_812270_721659.html'></a>
<a href='/art/2016/5/20/art_812270_721665.html'></a>
<a href='/art/2016/5/20/art_812270_721671.html'></a>
<a href='/art/2016/5/20/art_812270_721677.html'></a>
<a href='/art/2016/5/20/art_812270_721683.html'></a>
<a href='/art/2016/5/20/art_812270_721689.html'></a>
<a href='/art/2016/5/20/art_812270_721695.html'></a>
<a href='/art/2016/5/20/art_812270_721701.html'></a>
<a href='/art/2016/5/20/art_812270_721707.html'></a>
<a href='/art/2016/5/20/art_812270_721713.html'></a>
<a href='/art/2016/5/20/art_812270_721719.html'></a>
<a href='/art/2016/5/20/art_812270_721725.html'></a>
<a href='/art/2016/5/20/art_812270_721731.html'></a>
<a href='/art/2016/5/20/art_812270_721737.html'></a>
<a href='/art/2016/5/20/art_812270_721743.html'></a>
<a href='/art/2016/5/20/art_812270_721749.html'></a>
<a href='/art/2016/5/20/art_812270_721755.html'></a>
<a href='/art/2016/5/20/art_812270_721761.html'></a>
<a href='/art/2016/5/20/art_812270_721767.html'></a>
<a href='/art/2016/5/20/art_812270_721773.html'></a>
<a href='/art/2016/5/20/art_812270_721779.html'></a>
<a href='/art/2016/5/20/art_812270_721785.html'></a>
<a href='/art/2016/5/20/art_812270_721791.html'></a>
<a href='/art/2016/5/20/art_812270_721797.html'></a>
<a href='/art/2016/5/20/art_812270_721803.html'></a>
<a href='/art/2016/5/20/art_812270_721809.html'></a>
<a href='/art/2016/5/20/art_812270_721815.html'></a>
<a href='/art/2016/5/20/art_812270_721821.html'></a>
<a href='/art/2016/5/20/art_812270_721827.html'></a>
<a href='/art/2016/5/20/art_812270_721833.html'></a>
<a href='/art/2016/5/20/art_812270_721839.html'></a>
<a href='/art/2016/5/20/art_812270_721845.html'></a>
<a href='/art/2016/5/20/art_812270_721851.html'></a>
<a href='/art/2016/5/20/art_812270_721857.html'></a>
<a href='/art/2016/5/20/art_812270_721863.html'></a>
<a href='/art/2016/5/20/art_812270_721869.html'></a>
<a href='/art/2016/5/20/art_812270_721875.html'></a>
<a href='/art/2016/5/20/art_812270_721881.html'></a>
<a href='/art/2016/5/20/art_812270_721887.html'></a>
<a href='/art/2016/5/20/art_812270_721893.html'></a>
<a href='/art/2016/5/20/art_812270_721899.html'></a>
<a href='/art/2016/5/20/art_812270_721905.html'></a>
<a href='/art/2016/5/20/art_812270_721911.html'></a>
<a href='/art/2016/5/20/art_812270_721917.html'></a>
<a href='/art/2016/5/20/art_812270_721923.html'></a>
<a href='/art/2016/5/20/art_812270_721929.html'></a>
<a href='/art/2016/5/20/art_812270_721935.html'></a>
<a href='/art/2016/5/20/art_812270_721941.html'></a>
<a href='/art/2016/5/20/art_812270_721947.html'></a>
<a href='/art/2016/5/20/art_812270_721953.html'></a>
<a href='/art/2016/5/20/art_812270_721959.html'></a>
<a href='/art/2016/5/20/art_812270_721965.html'></a>
<a href='/art/2016/5/20/art_812270_721971.html'></a>
<a href='/art/2016/5/20/art_812270_721977.html'></a>
<a href='/art/2016/5/20/art_812270_721983.html'></a>
<a href='/art/2016/5/20/art_812270_721989.html'></a>
<a href='/art/2016/5/20/art_812270_721995.html'></a>
<a href='/art/2016/5/20/art_812270_722001.html'></a>
<a href='/art/2016/5/20/art_812270_722007.html'></a>
<a href='/art/2016/5/20/art_812270_722013.html'></a>
<a href='/art/2016/5/20/art_812270_722019.html'></a>
<a href='/art/2016/5/20/art_812270_722025.html'></a>
<a href='/art/2016/5/20/art_812270_722031.html'></a>
<a href='/art/2016/5/20/art_812270_722037.html'></a>
<a href='/art/2016/5/20/art_812270_722043.html'></a>
<a href='/art/2016/5/20/art_812270_722049.html'></a>
<a href='/art/2016/5/20/art_812270_722055.html'></a>
<a href='/art/2016/5/20/art_812270_722061.html'></a>
<a href='/art/2016/5/20/art_812270_722067.html'></a>
<a href='/art/2016/5/20/art_812270_722073.html'></a>
<a href='/art/2016/5/20/art_812270_722079.html'></a>
<a href='/art/2016/5/20/art_812270_722085.html'></a>
<a href='/art/2016/5/20/art_812270_722091.html'></a>
<a href='/art/2016/5/20/art_812270_722097.html'></a>
<a href='/art/2016/5/20/art_812270_722103.html'></a>
<a href='/art/2016/5/20/art_812270_722109.html'></a>
<a href='/art/2016/5/20/art_812270_722115.html'></a>
<a href='/art/2016/5/20/art_812270_722121.html'></a>
<a href='/art/2016/5/20/art_812270_722127.html'></a>
<a href='/art/2016/5/20/art_812270_722133.html'></a>
<a href='/art/2016/5/20/art_812270_722139.html'></a>
<a href='/art/2016/5/20/art_812270_722145.html'></a>
<a href='/art/2016/5/20/art_812270_722151.html'></a>
<a href='/art/2016/5/20/art_812270_722157.html'></a>
<a href='/art/2016/5/20/art_812270_722163.html'></a>
<a href='/art/2016/5/20/art_812270_722169.html'></a>
<a href='/art/2016/5/20/art_812270_722175.html'></a>
<a href='/art/2016/5/20/art_812270_722181.html'></a>
<a href='/art/2016/5/20/art_812270_722187.html'></a>
<a href='/art/2016/5/20/art_812270_722193.html'></a>
<a href='/art/2016/5/20/art_812270_722199.html'></a>
<a href='/art/2016/5/20/art_812270_722205.html'></a>
<a href='/art/2016/5/20/art_812270_722211.html'></a>
<a href='/art/2016/5/20/art_812270_722217.html'></a>
<a href='/art/2016/5/20/art_812270_722223.html'></a>
<a href='/art/2016/5/20/art_812270_722229.html'></a>
<a href='/art/2016/5/20/art_812270_722235.html'></a>
<a href='/art/2016/5/20/art_812270_722241.html'></a>
<a href='/art/2016/5/20/art_812270_722247.html'></a>
<a href='/art/2016/5/20/art_812270_722253.html'></a>
<a href='/art/2016/5/20/art_812270_722259.html'></a>
<a href='/art/2016/5/20/art_812270_722265.html'></a>
<a href='/art/2016/5/20/art_812270_722271.html'></a>
<a href='/art/2016/5/20/art_812270_722277.html'></a>
<a href='/art/2016/5/20/art_812270_722283.html'></a>
<a href='/art/2016/5/20/art_812270_722289.html'></a>
<a href='/art/2016/5/20/art_812270_722295.html'></a>
<a href='/art/2016/5/20/art_812270_722301.html'></a>
<a href='/art/2016/5/20/art_812270_722307.html'></a>
<a href='/art/2016/5/20/art_812270_722313.html'></a>
<a href='/art/2016/5/20/art_812270_722319.html'></a>
<a href='/art/2016/5/20/art_812270_722325.html'></a>
<a href='/art/2016/5/20/art_812270_722331.html'></a>
<a href='/art/2016/5/20/art_812270_722337.html'></a>
<a href='/art/2016/5/20/art_812270_722343.html'></a>
<a href='/art/2016/5/20/art_812270_722349.html'></a>
<a href='/art/2016/5/20/art_812270_722355.html'></a>
<a href='/art/2016/5/20/art_812270_722361.html'></a>
<a href='/art/2016/5/20/art_812270_722367.html'></a>
<a href='/art/2016/5/20/art_812270_722373.html'></a>
<a href='/art/2016/5/20/art_812270_722379.html'></a>
<a href='/art/2016/5/20/art_812270_722385.html'></a>
<a href='/art/2016/5/20/art_812270_722391.html'></a>
<a href='/art/2016/5/20/art_812270_722397.html'></a>
<a href='/art/2016/5/20/art_812270_722403.html'></a>
<a href='/art/2016/5/20/art_812270_722409.html'></a>
<a href='/art/2016/5/20/art_812270_722415.html'></a>
<a href='/art/2016/5/20/art_812270_722421.html'></a>
<a href='/art/2016/5/20/art_812270_722427.html'></a>
<a href='/art/2016/5/20/art_812270_722433.html'></a>
<a href='/art/2016/5/20/art_812270_722439.html'></a>
<a href='/art/2016/5/20/art_812270_722445.html'></a>
<a href='/art/2016/5/20/art_812270_722451.html'></a>
<a href='/art/2016/5/20/art_812270_722457.html'></a>
<a href='/art/2016/5/20/art_812270_722463.html'></a>
<a href='/art/2016/5/20/art_812270_722469.html'></a>
<a href='/art/2016/5/20/art_812270_722475.html'></a>
<a href='/art/2016/5/20/art_812270_722481.html'></a>
<a href='/art/2016/5/20/art_812270_722487.html'></a>
<a href='/art/2016/5/20/art_812270_722493.html'></a>
<a href='/art/2016/5/20/art_812270_722499.html'></a>
<a href='/art/2016/5/20/art_812270_722505.html'></a>
<a href='/art/2016/5/20/art_812270_722511.html'></a>
<a href='/art/2016/5/20/art_812270_722517.html'></a>
<a href='/art/2016/5/20/art_812270_722523.html'></a>
<a href='/art/2016/5/20/art_812270_722529.html'></a>
<a href='/art/2016/5/20/art_812270_722535.html'></a>
<a href='/art/2016/5/20/art_812270_722541.html'></a>
<a href='/art/2016/5/20/art_812270_722547.html'></a>
<a href='/art/2016/5/20/art_812270_722553.html'></a>
<a href='/art/2016/5/20/art_812270_722559.html'></a>
<a href='/art/2016/5/20/art_812270_722565.html'></a>
<a href='/art/2016/5/20/art_812270_722571.html'></a>
<a href='/art/2016/5/20/art_812270_722577.html'></a>
<a href='/art/2016/5/20/art_812270_722583.html'></a>
<a href='/art/2016/5/20/art_812270_722589.html'></a>
<a href='/art/2016/5/20/art_812270_722595.html'></a>
<a href='/art/2016/5/20/art_812270_722601.html'></a>
<a href='/art/2016/5/20/art_812270_722607.html'></a>
<a href='/art/2016/5/20/art_812270_722613.html'></a>
<a href='/art/2016/5/20/art_812270_722619.html'></a>
<a href='/art/2016/5/20/art_812270_722625.html'></a>
<a href='/art/2016/5/20/art_812270_722631.html'></a>
<a href='/art/2016/5/20/art_812270_722637.html'></a>
<a href='/art/2016/5/20/art_812270_722643.html'></a>
<a href='/art/2016/5/20/art_812270_722649.html'></a>
<a href='/art/2016/5/20/art_812270_722655.html'></a>
<a href='/art/2016/5/20/art_812270_722661.html'></a>
<a href='/art/2016/5/20/art_812270_722667.html'></a>
<a href='/art/2016/5/20/art_812270_722673.html'></a>
<a href='/art/2016/5/20/art_812270_722679.html'></a>
<a href='/art/2016/5/20/art_812270_722685.html'></a>
<a href='/art/2016/5/20/art_812270_722691.html'></a>
<a href='/art/2016/5/20/art_812270_722697.html'></a>
<a href='/art/2016/5/20/art_812270_722703.html'></a>
<a href='/art/2016/5/20/art_812270_722709.html'></a>
<a href='/art/2016/5/20/art_812270_722715.html'></a>
<a href='/art/2016/5/20/art_812270_722721.html'></a>
<a href='/art/2016/5/20/art_812270_722727.html'></a>
<a href='/art/2016/5/20/art_812270_722733.html'></a>
<a href='/art/2016/5/20/art_812270_722739.html'></a>
<a href='/art/2016/5/20/art_812270_722745.html'></a>
<a href='/art/2016/5/20/art_812270_722751.html'></a>
<a href='/art/2016/5/20/art_812270_722757.html'></a>
<a href='/art/2016/5/20/art_812270_722763.html'></a>
<a href='/art/2016/5/20/art_812270_722769.html'></a>
<a href='/art/2016/5/20/art_812270_722775.html'></a>
<a href='/art/2016/5/20/art_812270_722781.html'></a>
<a href='/art/2016/5/20/art_812270_722787.html'></a>
<a href='/art/2016/5/20/art_812270_722793.html'></a>
<a href='/art/2016/5/20/art_812270_722799.html'></a>
<a href='/art/2016/5/20/art_812270_722805.html'></a>
<a href='/art/2016/5/20/art_812270_722811.html'></a>
<a href='/art/2016/5/20/art_812270_722817.html'></a>
<a href='/art/2016/5/20/art_812270_722823.html'></a>
<a href='/art/2016/5/20/art_812270_722829.html'></a>
<a href='/art/2016/5/20/art_812270_722835.html'></a>
<a href='/art/2016/5/20/art_812270_722841.html'></a>
<a href='/art/2016/5/20/art_812270_722847.html'></a>
<a href='/art/2016/5/20/art_812270_722853.html'></a>
<a href='/art/2016/5/20/art_812270_722859.html'></a>
<a href='/art/2016/5/20/art_812270_722865.html'></a>
<a href='/art/2016/5/20/art_812270_722871.html'></a>
<a href='/art/2016/5/20/art_812270_722877.html'></a>
<a href='/art/2016/5/20/art_812270_722883.html'></a>
<a href='/art/2016/5/20/art_812270_722889.html'></a>
<a href='/art/2016/5/20/art_812270_722895.html'></a>
<a href='/art/2016/5/20/art_812270_722901.html'></a>
<a href='/art/2016/5/20/art_812270_722907.html'></a>
<a href='/art/2016/5/20/art_812270_722913.html'></a>
<a href='/art/2016/5/20/art_812270_722919.html'></a>
<a href='/art/2016/5/20/art_812270_722925.html'></a>
<a href='/art/2016/5/20/art_812270_722931.html'></a>
<a href='/art/2016/5/20/art_812270_722937.html'></a>
<a href='/art/2016/5/20/art_812270_722943.html'></a>
<a href='/art/2016/5/20/art_812270_722949.html'></a>
<a href='/art/2016/5/20/art_812270_722955.html'></a>
<a href='/art/2016/5/20/art_812270_722961.html'></a>
<a href='/art/2016/5/20/art_812270_722967.html'></a>
<a href='/art/2016/5/20/art_812270_722973.html'></a>
<a href='/art/2016/5/20/art_812270_722979.html'></a>
<a href='/art/2016/5/20/art_812270_722985.html'></a>
<a href='/art/2016/5/20/art_812270_722991.html'></a>
<a href='/art/2016/5/20/art_812270_722997.html'></a>
<a href='/art/2016/5/20/art_812270_723003.html'></a>
<a href='/art/2016/5/20/art_812270_723009.html'></a>
<a href='/art/2016/5/20/art_812270_723015.html'></a>
<a href='/art/2016/5/20/art_812270_723021.html'></a>
<a href='/art/2016/5/20/art_812270_723027.html'></a>
<a href='/art/2016/5/20/art_812270_723033.html'></a>
<a href='/art/2016/5/20/art_812270_723039.html'></a>
<a href='/art/2016/5/20/art_812270_723045.html'></a>
<a href='/art/2016/5/20/art_812270_723051.html'></a>
<a href='/art/2016/5/20/art_812270_723057.html'></a>
<a href='/art/2016/5/20/art_812270_723063.html'></a>
<a href='/art/2016/5/20/art_812270_723069.html'></a>
<a href='/art/2016/5/20/art_812270_723075.html'></a>
<a href='/art/2016/5/20/art_812270_723081.html'></a>
<a href='/art/2016/5/20/art_812270_723087.html'></a>
<a href='/art/2016/5/20/art_812270_723093.html'></a>
<a href='/art/2016/5/20/art_812270_723099.html'></a>
<a href='/art/2016/5/20/art_812270_723105.html'></a>
<a href='/art/2016/5/20/art_812270_723111.html'></a>
<a href='/art/2016/5/20/art_812270_723117.html'></a>
<a href='/art/2016/5/20/art_812270_723123.html'></a>
<a href='/art/2016/5/20/art_812270_723129.html'></a>
<a href='/art/2016/5/20/art_812270_723135.html'></a>
<a href='/art/2016/5/20/art_812270_723141.html'></a>
<a href='/art/2016/5/20/art_812270_723147.html'></a>
<a href='/art/2016/5/20/art_812270_723153.html'></a>
<a href='/art/2016/5/20/art_812270_723159.html'></a>
<a href='/art/2016/5/20/art_812270_723165.html'></a>
<a href='/art/2016/5/20/art_812270_723171.html'></a>
<a href='/art/2016/5/20/art_812270_723177.html'></a>
<a href='/art/2016/5/20/art_812270_723183.html'></a>
<a href='/art/2016/5/20/art_812270_723189.html'></a>
<a href='/art/2016/5/20/art_812270_723195.html'></a>
<a href='/art/2016/5/20/art_812270_723201.html'></a>
<a href='/art/2016/5/20/art_812270_723207.html'></a>
<a href='/art/2016/5/20/art_812270_723213.html'></a>
<a href='/art/2016/5/20/art_812270_723219.html'></a>
<a href='/art/2016/5/20/art_812270_723225.html'></a>
<a href='/art/2016/5/20/art_812270_723231.html'></a>
<a href='/art/2016/5/20/art_812270_723237.html'></a>
<a href='/art/2016/5/20/art_812270_723243.html'></a>
<a href='/art/2016/5/20/art_812270_723249.html'></a>
<a href='/art/2016/5/20/art_812270_723255.html'></a>
<a href='/art/2016/5/20/art_812270_723261.html'></a>
<a href='/art/2016/5/20/art_812270_723267.html'></a>
<a href='/art/2016/5/20/art_812270_723273.html'></a>
<a href='/art/2016/5/20/art_812270_723279.html'></a>
<a href='/art/2016/5/20/art_812270_723285.html'></a>
<a href='/art/2016/5/20/art_812270_723291.html'></a>
<a href='/art/2016/5/20/art_812270_723297.html'></a>
<a href='/art/2016/5/20/art_812270_723303.html'></a>
<a href='/art/2016/5/20/art_812270_723309.html'></a>
<a href='/art/2016/5/20/art_812270_723315.html'></a>
<a href='/art/2016/5/20/art_812270_723321.html'></a>
<a href='/art/2016/5/20/art_812270_723327.html'></a>
<a href='/art/2016/5/20/art_812270_723333.html'></a>
<a href='/art/2016/5/20/art_812270_723339.html'></a>
<a href='/art/2016/5/20/art_812270_723345.html'></a>
<a href='/art/2016/5/20/art_812270_723351.html'></a>
<a href='/art/2016/5/20/art_812270_723357.html'></a>
<a href='/art/2016/5/20/art_812270_723363.html'></a>
<a href='/art/2016/5/20/art_812270_723369.html'></a>
<a href='/art/2016/5/20/art_812270_723375.html'></a>
<a href='/art/2016/5/20/art_812270_723381.html'></a>
<a href='/art/2016/5/20/art_812270_723387.html'></a>
<a href='/art/2016/5/20/art_812270_723393.html'></a>
<a href='/art/2016/5/20/art_812270_723399.html'></a>
<a href='/art/2016/5/20/art_812270_723405.html'></a>
<a href='/art/2016/5/20/art_812270_723411.html'></a>
<a href='/art/2016/5/20/art_812270_723417.html'></a>
<a href='/art/2016/5/20/art_812270_723423.html'></a>
<a href='/art/2016/5/20/art_812270_723429.html'></a>
<a href='/art/2016/5/20/art_812270_723435.html'></a>
<a href='/art/2016/5/20/art_812270_723441.html'></a>
<a href='/art/2016/5/20/art_812270_723447.html'></a>
<a href='/art/2016/5/20/art_812270_723453.html'></a>
<a href='/art/2016/5/20/art_812270_723459.html'></a>
<a href='/art/2016/5/20/art_812270_723465.html'></a>
<a href='/art/2016/5/20/art_812270_723471.html'></a>
<a href='/art/2016/5/20/art_812270_723477.html'></a>
<a href='/art/2016/5/20/art_812270_723483.html'></a>
<a href='/art/2016/5/20/art_812270_723489.html'></a>
<a href='/art/2016/5/20/art_812270_723495.html'></a>
<a href='/art/2016/5/20/art_812270_723501.html'></a>
<a href='/art/2016/5/20/art_812270_723507.html'></a>
<a href='/art/2016/5/20/art_812270_723513.html'></a>
<a href='/art/2016/5/20/art_812270_723519.html'></a>
<a href='/art/2016/5/20/art_812270_723525.html'></a>
<a href='/art/2016/5/20/art_812270_723531.html'></a>
<a href='/art/2016/5/20/art_812270_723537.html'></a>
<a href='/art/2016/5/20/art_812270_723543.html'></a>
<a href='/art/2016/5/20/art_812270_723549.html'></a>
<a href='/art/2016/5/20/art_812270_723555.html'></a>
<a href='/art/2016/5/20/art_812270_723561.html'></a>
<a href='/art/2016/5/20/art_812270_723567.html'></a>

修复方案:

尽快清除相关页面。同时,建议对服务器进行检查。

版权声明:转载请注明来源 FYX@乌云


漏洞回应

厂商回应:

危害等级:中

漏洞Rank:8

确认时间:2016-05-24 11:41

厂商回复:

CNVD确认并复现所述情况,已经转由CNCERT下发给浙江分中心,由其后续协调网站管理单位处置。

最新状态:

2016-06-28:漏洞已修复!


漏洞评价:

评价

  1. 2016-05-21 13:20 | 玄道 ( 普通白帽子 | Rank:142 漏洞数:43 | 就是注入 就是注入 注入)

    难道是法 lun 功?

  2. 2016-05-21 13:22 | 牛 小 帅 ( 普通白帽子 | Rank:1597 漏洞数:386 | bye)

    洞主请看私信,麻烦了

  3. 2016-05-21 13:23 | 玄道 ( 普通白帽子 | Rank:142 漏洞数:43 | 就是注入 就是注入 注入)

    @牛 小 帅 你有的忙了