Danfoss SCADA²úÆ·¶à¸öÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-09-09

¡ñÎó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºÔÝÎÞ£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºÔÝÎÞ£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


¡ñÓ°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


Danfoss SCADA AK-EM 800²úÆ·


¡ñÎó²î¸ÅÊö


Ñо¿Ö°Ô±ÔÚDanfoss SCADA²úÆ·Öз¢Ã÷ÁËÁ½¸öÑÏÖØÎó²î¡£¡£¡£¡£¡£


Ò»¸öÊÇÏÖʵÉϾßÓиßȨÏÞ¹¦Ð§µÄÖÎÀíÈí¼þµÄºóÃÅ¡£¡£¡£¡£¡£ËäÈ»½¨ÉèÕâ¸öºóÃÅ¿ÉÄÜÊÇΪÁË×ÊÖú¹©Ó¦É̵ÄÖ§³ÖÍŶӵǼϵͳÀ´Ð­ÖúËûÃǵĿͻ§£¬£¬£¬£¬£¬£¬£¬£¬µ«ÃÜÂë¿ÉÒÔºÜÈÝÒ׵ر»¹¥»÷ÕßÆÆ½â¡£¡£¡£¡£¡£×ÝÈ»ÃÜÂ뱬·¢×ª±ä£¬£¬£¬£¬£¬£¬£¬£¬Risk Based SecurityµÄÑо¿ÍŶÓÒ²Äܹ»±àдһ¸ö³ÌÐò£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÈκθø×¼Ê±¼äÌìÉú׼ȷµÄÃÜÂë¡£¡£¡£¡£¡£Ò»µ©ÒÔÕâÖÖ·½·¨»ñµÃ»á¼û£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߾ͿÉÒÔÖ´ÐÐÖݪֲÙ×÷£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÔڵײãÊý¾Ý¿âÖйûÕæºÍʹÓÃÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬»òÕßÖØÖó¬µÈÖÎÀíÔ±µÄÃÜÂ룬£¬£¬£¬£¬£¬£¬£¬È»ºóÔÚ¾ßÓÐÍêȫȨÏÞµÄÕÊ»§ÏµÇ¼¡£¡£¡£¡£¡£


ÁíÒ»¸öÑÏÖØÎó²îÊǵ±»á¼ûСЧÀͳÌÐòʱȱÉÙÔÊÐí¼ì²é£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÖ´ÐÐÃô¸ÐµÄÊý¾Ý¿âÅÌÎÊ£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈ磬£¬£¬£¬£¬£¬£¬£¬¹ûÕæÓû§ÃûºÍÃÜÂë¡£¡£¡£¡£¡£


¡ñÎó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£


¡ñÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬£¬£¬£¬ÏÂÔØÁ´½Ó£ºhttps://www.danfoss.com/en/service-and-support/downloads/dcs/adap-kool-software/ak-em-800/#tab-overview¡£¡£¡£¡£¡£


¡ñ²Î¿¼Á´½Ó


https://www.helpnetsecurity.com/2019/09/05/danfoss-scada-vulnerabilities/