»Æ½ð³Ç»Æ½ð³Ç¹ÙÍøÊµÑéÊÒ¼à²âµ½CrowdStrike·¢²¼Õë¶ÔMicrosoft Exchange ServerеÄÀûÓÃÁ´µÄ¼¼Êõϸ½Ú£¬½«ÆäÃüÃûΪ"OWASSRF"£¬Í¨¹ýMicrosoft Exchange ServerȨÏÞÌáÉý©¶´(CVE-2022-41080)ºÍMicrosoft Exchange ServerÔ¶³Ì´úÂëÖ´ÐЩ¶´(CVE-2022-41082)×éºÏÀûÓÿÉͨ¹ýOutlook Web Application (OWA)¶Ëµã×îÖÕÖ´ÐÐÈÎÒâ´úÂ롣Ŀǰ£¬´Ë©¶´ÀûÓÃϸ½ÚÒѹ«¿ª£¬ÇÒ´æÔÚÔÚÒ°ÀûÓá£
¼òÊö£º¸Ã©¶´´æÔÚÓÚMicrosoft Exchange ServerÖУ¬Ô¶³Ì¹¥»÷Õß¿Éͨ¹ýOutlook Web Application (OWA)¶ËµãÔÚÊÜÓ°ÏìµÄϵͳÉÏ·¢ÆðSSRF¹¥»÷¡£¹¥»÷Õ߿ɽ«¸Ã©¶´ÓëCVE-2022-41082©¶´ÅäºÏʹÓã¬×îÖÕÔÚÄ¿±ê·þÎñÆ÷ÉÏÖ´ÐÐÈÎÒâ´úÂë¡£
¼òÊö£º¸Ã©¶´´æÔÚÓÚMicrosoft Exchange ServerÖУ¬¾ßÓÐÖ´ÐÐPowerShellȨÏÞµÄÔ¶³Ì¹¥»÷Õß¿ÉÀûÓôË©¶´ÔÚÄ¿±êϵͳÉÏÖ´ÐÐÈÎÒâ´úÂë¡£
Ŀǰ΢Èí¹Ù·½ÒÑÕë¶ÔÊÜÖ§³ÖµÄ²úÆ·°æ±¾·¢²¼ÁËÐÞ¸´¸Ã©¶´µÄ»Æ½ð³Ç¹ÙÍø²¹¶¡£¬½¨ÒéÊÜÓ°ÏìÓû§¿ªÆôϵͳ×Ô¶¯¸üа²×°²¹¶¡½øÐзÀ»¤¡£
Windows server / Windows ¼ì²â²¢¿ªÆôWindows×Ô¶¯¸üÐÂÁ÷³ÌÈçÏ£º
- µã»÷¿ªÊ¼²Ëµ¥£¬ÔÚµ¯³öµÄ²Ëµ¥ÖÐÑ¡Ôñ¡°¿ØÖÆÃæ°å¡±½øÐÐÏÂÒ»²½¡£
- µã»÷¿ØÖÆÃæ°åÒ³ÃæÖеġ°ÏµÍ³ºÍ»Æ½ð³Ç¹ÙÍø¡±£¬½øÈëÉèÖá£
- ÔÚµ¯³öµÄеĽçÃæÖÐÑ¡Ôñ¡°windows £õ£ð£ä£á£ô£å¡±Öеġ°ÆôÓûò½ûÓÃ×Ô¶¯¸üС±¡£
- È»ºó½øÈëÉèÖô°¿Ú£¬Õ¹¿ªÏÂÀ²Ëµ¥ÏѡÔñÆäÖеÄ×Ô¶¯°²×°¸üУ¨ÍƼö£©¡£