DrayTek Vigor企业级路由器和交换机设备在野0-day 漏洞分析报告
Tags
country: Ukraine
attack-pattern: Data
Common Information
Type Value
UUID ece2fdb5-451c-4575-85a8-8cbd8ec92328
Fingerprint 346ff241e4cf28ce
Analysis status DONE
Considered CTI value 2
Text language
Published March 27, 2020, midnight
Added to db Jan. 18, 2023, 8:36 p.m.
Last updated Nov. 17, 2024, 12:55 p.m.
Headline DrayTek Vigor企业级路由器和交换机设备在野0-day 漏洞分析报告
Title DrayTek Vigor企业级路由器和交换机设备在野0-day 漏洞分析报告
Detected Hints/Tags/Attributes 12/2/15
Attributes
Details Type #Events CTI Value
Details CVE 12
cve-2020-8515
Details Domain 1
mailsend.sh
Details File 1
uplolskciajus.php
Details File 4
session.json
Details File 1
lsocaisjdansb.php
Details md5 1
7c42b66ef314c466c1e3ff6b35f134a4
Details md5 1
01946d5587c2774418b5a6c181199099
Details md5 1
d556aa48fa77040a03ab120b4157c007
Details IPv4 1
103.82.143.51
Details IPv4 1
178.151.198.73
Details Url 1
http://103.82.143.51:58172/vig/tcpst1
Details Url 1
http://103.82.143.51:58172/vi1
Details Url 1
http://103.82.143.51:58172/vig/mailsend.sh1
Details Url 1
https://103.82.143.51:58443/uplolskciajus.php
Details Url 1
https://103.82.143.51:58443/lsocaisjdansb.php