Âü²¨Öйú arrow ·þÎñ¶¯Ì¬ arrow Ê¥µ®²¡¶¾¹¥»÷·¢Íþ ר¹¥IEä¯ÀÀÆ÷PHP·þÎñÆ÷
Ê¥µ®²¡¶¾¹¥»÷·¢Íþ ר¹¥IEä¯ÀÀÆ÷PHP·þÎñÆ÷ ´òÓ¡ E-mail
  elvis   2004-12-30
CNET¿Æ¼¼×ÊÑ¶Íø 12ÔÂ27ÈÕ¹ú¼Ê±¨µÀ ²¡¶¾±àдÕßÔÚÊ¥µ®½Úʱ¸ø»¥ÁªÍøÁôÏÂÁ˲»Ñ°³£µÄµç×ÓÓʼþ¡°ÀñÎ¡£²¡¶¾½èÖú¾ÉµÄIE©¶´£¬ÔÙ¼ÓÉÏаæµÄ¡°Ê¥µ®¡±È䳿·¢¶¯¹¥»÷£¬Ê¹µÃWindowsÓû§ºÍPHP·þÎñÆ÷µÄ¹ÜÀíÔ±²¢Ã»ÓйýÉϰ²¾²ÏéºÍµÄÊ¥µ®½Ú¡£

Full DisclosureµÄ°²È«ÓʼþÁбíÏÔʾ£¬ÍøÉÏÒѾ­³öÏÖеIJ¡¶¾È䳿¹¥»÷£¬´Ë´Î¹¥»÷ÀûÓõÄÊÇWin XP SP2ÖеÄIEµÄÁ½¸ö©¶´£ºHelp ActiveXÖеݲȫÓػغͿçÍøÕ¾µÄ½Å±¾¡£²¡¶¾¹¥»÷³öÏÖÔÚÓû§µÄÆô¶¯Îļþ¼ÐÖС£¾Ý°²È«×¨¼Ò·ÖÎö£¬´Ë¹¥»÷¾¡¹Ü²»»á¸ÐȾ²¡¶¾£¬µ«ÊÜËü¹¥»÷ºó£¬²Ù×÷ϵͳÄܱ»¼äµýÈí¼þºÍ¹ã¸æ²å¼þËù¿ØÖÆ¡£

ÁíÍ⣬ÔÚÖÜĩʱ£¬ÓÖ·¢ÏÖÁËÈý¸öWindowsϵͳµÄ©¶´¡£·¢ÏÖWindowsÕâЩ©¶´µÄÈ˽¨ÒéWindowsÓû§¸ÄΪMozillaµÄ FireFoxä¯ÀÀÆ÷À´Ìá¸ßϵͳµÄ°²È«ÐÔ¡£ËûÃDZíʾ£¬Î¢ÈíÒ²³ÐÈÏÕâÈý¸ö©¶´µÄÎÊÌâÑÏÖØ£¬ÒѾ­·¢ÏÖÕâЩ©¶´ÓÐÒ»¶Îʱ¼äÁË£¬µ«»¹Î´´òÉϲ¹¶¡¡£

Ëæ×ÅÉÏÖÜSanty.A²¡¶¾¹¥»÷¿ªÊ¼ÏûÍË£¬°²È«×¨¼Ò¾¯¸æµÀ£¬ÏÂÒ»´ú²¡¶¾¹¥»÷µÄ¶ÔÏó½«ÊÇÃÀ¹úÔÚÏß(AOL)ºÍÑÅ»¢µÈÒÔ¼°½ÏÔç°æ±¾µÄ GoogleËÑË÷·þÎñ¡£

¾ÝÈüÃÅÌØ¿ËµÄ°²È«ÈËÔ±³Æ£¬Santy.BÔòͨ¹ý¡°AOLºÍÑÅ»¢µÄËÑË÷ÒýÇæ¡±£¬Ñ°ÕÒ»ùÓÚPHP-BBµÄ·þÎñÆ÷£¬²¢¶Ô´æÔÚ©¶´µÄ·þÎñÆ÷½øÐй¥»÷¡£Êܵ½¹¥»÷ºó£¬ËùÓеÄ.htm, .php, .asp, .shtm, .jsp, and .phtmÎļþ¶¼¿ÉÄܱ»¸Äд¡£

°²È«×¨¼Ò½¨Òé¹ÜÀí½«PHP·þÎñÆ÷Éý¼¶ÖÁphpBB2.0.11°æ¡£²¢³ÆÕâ¸ö°æ±¾ÒѾ­°Ñ©¶´ÐÞ²¹ÁË¡£²»¹ýBugtraqµÄÓʼþÁбíÏÔʾ£¬Õâ¸ö°æ±¾ÈÔ»áÊܵ½¹¥»÷¡£

×îÐÂÖ÷Ìâ
ÈÈÃÅÖ÷Ìâ
×îÐÂÏÂÔØ
ÈÈÃÅÏÂÔØ