未知攻,,焉知防。。。安全缝隙钻研是网络安全攻防实际的基础性工作。。。AB钱包持久关注安全缝隙的挖掘与监测,,AB钱包代码安全尝试室、、技术钻研院、、威胁谍报中心、、A-TEAM等团队已累计向CVE、、CNVD、、CNNVD、、NVDB、、第三方缝隙平台及其他国内外大型政企机构汇报0day缝隙数百个。。。
| 序号 | 缝隙名 | 颁布功夫 | 发现团队 | CVE编号 | 查看链接 | 称谢截图 |
|---|---|---|---|---|---|---|
| 194 | Foxit PDF Reader Annotation界外读信息泄露缝隙 | 2021-10-09 | AB钱包代码安全尝试室 | CVE-2021-34949 | https://www.zerodayinitiative.com/advisories/ZDI-21-1180/ |
点击查看
|
| 193 | Foxit PDF Reader Square Annotation 开释后使用远程代码执行缝隙 | 2021-10-09 | AB钱包代码安全尝试室 | CVE-2021-34948 | https://www.zerodayinitiative.com/advisories/ZDI-21-1179/ |
点击查看
|
| 192 | Windows Print Spooler 信息泄露缝隙 | 2021-10-01 | AB钱包代码安全尝试室 | CVE-2021-41332 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-41332 |
点击查看
|
| 191 | 谷歌Chrome Safe Browsing 中的开释后使用缝隙 | 2021-09-01 | AB钱包代码安全尝试室 | CVE-2021-37974 | https://chromereleases.googleblog.com/2021/09/stable-channel-update-for-desktop_30.html |
点击查看
|
| 190 | 施耐德电气Modicon PAC Controllers and PLC Simulator for EcoStruxure? Control Expert and EcoStruxure? Process Expert 空解指针解引用缝隙 | 2021-08-01 | AB钱包代码安全尝试室 | CVE-2021-22792 | https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-222-04 |
点击查看
|
| 189 | 施耐德电气Modicon PAC Controllers and PLC Simulator for EcoStruxure? Control Expert and EcoStruxure? Process Expert 界外写缝隙 | 2021-08-01 | AB钱包代码安全尝试室 | CVE-2021-22791 | https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-222-04 |
点击查看
|
| 188 | 施耐德电气Modicon PAC Controllers and PLC Simulator for EcoStruxure? Control Expert and EcoStruxure? Process Expert 界外读缝隙 | 2021-08-19 | AB钱包代码安全尝试室 | CVE-2021-22790 | https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-222-04 |
点击查看
|
| 187 | 施耐德电气Modicon PAC Controllers and PLC Simulator for EcoStruxure? Control Expert and EcoStruxure? Process Expert 内存缓冲区天堑内操作限度不当 | 2021-08-19 | AB钱包代码安全尝试室 | CVE-2021-22789 | https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-222-04 |
点击查看
|
| 186 | 西门子 Siemens JT2Go and Teamcenter Visualization 13.2.0.0及之前版本中存在CGM 文件空指针解引用缝隙 | 2021-08-19 | AB钱包代码安全尝试室 | CVE-2021-33717 | https://cert-portal.siemens.com/productcert/pdf/ssa-365397.pdf |
点击查看
|
| 185 | 施耐德电气EcoStruxureTM Control Expert, EcoStruxureTM Process Expert, SCADAPack RemoteConnect? x70, and Modicon Controllers M580 and M340痛处;;;げ怀浞 | 2021-07-01 | AB钱包代码安全尝试室 | CVE-2021-22781 | https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-194-01 |
点击查看
|