<script>window.data={"result": {"xprocessList": {"count": 1, "hostResultList": {"count": 19, "__typename": "HostResultListType", "result": [{"__typename": "HostResultType", "id": "633715", "ipAddress": "10.249.180.1", "state": "UP", "severity": "MEDIUM", "firstSurvivalTime": "2024-06-18T17:07:12.204242+00:00", "lastSurvivalTime": "2025-09-20T03:19:09.779623+00:00", "xprocessId": 582, "vulnerabilityList": {"count": 7, "aggregatedResultList": {"count": 2, "result": [{"title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "vulnResultList": {"count": 6, "result": [{"id": 72658, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-06-07T02:31:16.830253+00:00", "lastScanAt": "2025-09-20T04:17:25.702888+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 57862, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:57862\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc013 -\u003e TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}, {"id": 70578, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-06-07T02:35:29.194528+00:00", "lastScanAt": "2025-09-20T03:52:53.351841+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 31957, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:31957\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc013 -\u003e TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}, {"id": 70517, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-06-07T02:43:11.605014+00:00", "lastScanAt": "2025-09-20T03:51:52.078043+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 10250, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:10250\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc013 -\u003e TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}, {"id": 70228, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-06-07T03:07:55.131515+00:00", "lastScanAt": "2025-09-20T03:46:59.032921+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 43050, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:43050\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc013 -\u003e TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}, {"id": 68996, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-06-07T03:16:53.951441+00:00", "lastScanAt": "2025-09-20T03:31:02.146412+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 32505, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:32505\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc013 -\u003e TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}, {"id": 68897, "title": "CVE-2005-4900: TLS SHA-1 \u5b89\u5168\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "CRYPTOGRAPHIC", "exposures": ["CT-78813", "CVE-2005-4900", "CNVD-2016-09489", "CNNVD-201610-434", "12577"], "summary": "TLS\uff08\u5168\u79f0Transport Layer Security\uff0c\u5b89\u5168\u4f20\u8f93\u5c42\u534f\u8bae\uff09\u662f\u4e00\u5957\u7528\u4e8e\u5728\u4e24\u4e2a\u901a\u4fe1\u5e94\u7528\u7a0b\u5e8f\u4e4b\u95f4\u63d0\u4f9b\u4fdd\u5bc6\u6027\u548c\u6570\u636e\u5b8c\u6574\u6027\u7684\u534f\u8bae\u3002 TLS 1.2\u7248\u672c\u4e2d\u7684SHA-1\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u4e0a\u4e0b\u6587\u76f8\u5173\u7684\u653b\u51fb\u8005\u53ef\u5229\u7528\u8be5\u6f0f\u6d1e\u5b9e\u65bd\u6b3a\u9a97\u653b\u51fb\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-03-29T01:18:41.060566+00:00", "lastScanAt": "2025-09-20T03:29:30.693488+00:00", "impact": "\u653b\u51fb\u8005\u53ef\u5728\u6ca1\u6709\u8ba4\u8bc1\u7684\u60c5\u51b5\u4e0b\u76f4\u63a5\u64cd\u4f5c\u5bf9\u5e94\u7684 API \u63a5\u53e3\uff0c\u53ef\u76f4\u63a5\u88ab\u975e\u6cd5\u589e\u5220\u6539\u67e5\u6570\u636e\u3002\u4e14\u56e0\u4e3a\u653b\u51fb\u662f\u5728\u672a\u8ba4\u8bc1\u4e0b\u8fdb\u884c\u7684\uff0c\u6240\u4ee5\u540e\u7eed\u65e0\u6cd5\u901a\u8fc7\u5b9a\u4f4d\u7528\u6237\u8fdb\u884c\u5f02\u5e38\u6392\u67e5\u3002", "cvss": "{'cnnvd_severity': 'medium', 'nvd_severity': 'medium', 'nvd_cvss3': {'A': 'N', 'C': 'H', 'I': 'N', 'S': 'U', 'AC': 'H', 'AV': 'N', 'MA': 'N', 'MC': 'H', 'MI': 'N', 'PR': 'N', 'UI': 'N', 'MAC': 'H', 'MAV': 'N', 'MPR': 'N', 'MUI': 'N'}, 'nvd_cvss3_score': 5.9}", "vprScore": 8.2, "cpeInfos": [], "originalCpeConfiguration": "chrome = *\n", "poc": "\u6682\u65e0\u76f8\u5173\u6f0f\u6d1e\u539f\u7406\u4fe1\u606f", "solution": "1. \u4f7f\u7528\u884c\u4e1a\u8ba4\u8bc1\u7684\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff0c\u5982AES\uff0c\u907f\u514d\u4f7f\u7528\u5df2\u88ab\u7834\u89e3\u6216\u4e0d\u5b89\u5168\u7684\u7b97\u6cd5\u3002\n\n2. \u5b9a\u671f\u66f4\u65b0\u548c\u66f4\u6362\u5bc6\u94a5\uff0c\u91c7\u7528\u5b89\u5168\u7684\u5bc6\u94a5\u7ba1\u7406\u548c\u5b58\u50a8\u673a\u5236\u3002\n\n3. \u786e\u4fdd\u52a0\u5bc6\u5f3a\u5ea6\u8db3\u591f\uff0c\u907f\u514d\u4f7f\u7528\u5f31\u5bc6\u7801\u6216\u77ed\u5bc6\u94a5\u3002\n\n4. \u5bf9\u654f\u611f\u6570\u636e\u8fdb\u884c\u5b8c\u6574\u6027\u6821\u9a8c\u548c\u8ba4\u8bc1\u52a0\u5bc6\uff0c\u786e\u4fdd\u6570\u636e\u5728\u4f20\u8f93\u548c\u5b58\u50a8\u8fc7\u7a0b\u4e2d\u7684\u5b89\u5168\u6027\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 8181, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:8181\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `SHA1 Hash CipherSuite` \u7684\u503c\u4e3a\n```\n0xc014 -\u003e TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA\n```\n\n", "__typename": "VulnResultType"}], "__typename": "VulnResultListType"}, "__typename": "AggregatedVulnResultType"}, {"title": "TLS\u4f7f\u7528\u5df2\u88ab\u5e9f\u5f03\u76841.0\u7248\u672c\u6f0f\u6d1e", "severity": "MEDIUM", "vulnResultList": {"count": 1, "result": [{"id": 68896, "title": "TLS\u4f7f\u7528\u5df2\u88ab\u5e9f\u5f03\u76841.0\u7248\u672c\u6f0f\u6d1e", "severity": "MEDIUM", "definiteness": "CERTAINLY_99", "category": "UNSAFE_CONFIG", "exposures": ["CT-1203967"], "summary": "TLS\uff08\u4f20\u8f93\u5c42\u5b89\u5168\uff09\u662f\u4e00\u79cd\u52a0\u5bc6\u534f\u8bae\uff0c\u7528\u4e8e\u5728\u7f51\u7edc\u4e0a\u5b89\u5168\u5730\u4f20\u8f93\u6570\u636e\u3002TLS 1.0 \u662f\u65e9\u671f\u7248\u672c\u7684 TLS \u534f\u8bae\uff0c\u5df2\u88ab\u8ba4\u4e3a\u5b58\u5728\u5b89\u5168\u6f0f\u6d1e\u548c\u5f31\u70b9\u3002\u4f7f\u7528 TLS 1.0 \u53ef\u80fd\u5bfc\u81f4\u5b89\u5168\u98ce\u9669\u3002", "fixedTime": null, "project": {"fullName": "\u9ed8\u8ba4\u5de5\u4f5c\u533a"}, "status": "UNHANDLED", "firstScanAt": "2025-03-29T01:18:40.853425+00:00", "lastScanAt": "2025-09-20T03:29:30.662636+00:00", "impact": "\u52a0\u5bc6\u5f3a\u5ea6\u8f83\u5f31\uff1aTLS 1.0 \u4f7f\u7528\u7684\u52a0\u5bc6\u7b97\u6cd5\u548c\u534f\u8bae\u8bbe\u8ba1\u5df2\u88ab\u8ba4\u4e3a\u4e0d\u591f\u5b89\u5168\uff0c\u5bb9\u6613\u53d7\u5230\u653b\u51fb\u3002\u653b\u51fb\u8005\u53ef\u80fd\u80fd\u591f\u7834\u89e3\u52a0\u5bc6\u5e76\u7a83\u53d6\u654f\u611f\u6570\u636e\u3002\n\n\u4e2d\u95f4\u4eba\u653b\u51fb\u7684\u98ce\u9669\u589e\u52a0\uff1a\u4f7f\u7528 TLS 1.0 \u53ef\u80fd\u589e\u52a0\u4e2d\u95f4\u4eba\u653b\u51fb\u7684\u98ce\u9669\u3002\u653b\u51fb\u8005\u53ef\u4ee5\u5229\u7528 TLS 1.0 \u4e2d\u7684\u5f31\u70b9\uff0c\u52ab\u6301\u901a\u4fe1\u5e76\u7a83\u53d6\u6216\u7be1\u6539\u6570\u636e\u3002\n\n\u5408\u89c4\u6027\u95ee\u9898\uff1a\u8bb8\u591a\u5b89\u5168\u6807\u51c6\u548c\u5408\u89c4\u6027\u8981\u6c42\uff08\u5982PCI DSS\uff09\u8981\u6c42\u4f7f\u7528\u8f83\u65b0\u7248\u672c\u7684 TLS \u534f\u8bae\u3002\u4f7f\u7528\u5df2\u88ab\u5e9f\u5f03\u7684 TLS 1.0 \u53ef\u80fd\u5bfc\u81f4\u4e0d\u7b26\u5408\u5408\u89c4\u6027\u8981\u6c42\u3002", "cvss": "N/A", "vprScore": 0.0, "cpeInfos": [], "originalCpeConfiguration": "", "poc": "/", "solution": "1. \u4f7f\u7528\u5b89\u5168\u7684TLS\u7248\u672c\u548c\u914d\u7f6e\n\u7981\u7528\u4e0d\u5b89\u5168\u7684TLS\u7248\u672c\uff1a\u786e\u4fdd\u670d\u52a1\u5668\u914d\u7f6e\u53ea\u652f\u6301\u5b89\u5168\u7684TLS\u7248\u672c\u3002\n\u914d\u7f6e\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff1a\u7981\u7528\u5f31\u52a0\u5bc6\u7b97\u6cd5\u5982RC4\u3001DES\u548c3DES\u3002\n\u4f7f\u7528Perfect Forward Secrecy (PFS)\uff1a\u914d\u7f6e\u670d\u52a1\u5668\u4f7f\u7528PFS\u5bc6\u94a5\u4ea4\u6362\u7b97\u6cd5\uff0c\u5982DHE\u6216ECDHE\uff0c\u4ee5\u786e\u4fdd\u5373\u4f7f\u957f\u671f\u5bc6\u94a5\u6cc4\u9732\u4e5f\u65e0\u6cd5\u89e3\u5bc6\u8fc7\u53bb\u7684\u901a\u4fe1\u3002\n\u7981\u7528TLS\u538b\u7f29\uff1a\u7981\u7528TLS\u538b\u7f29\u4ee5\u9632\u6b62CRIME\u653b\u51fb\u3002\n2. \u8bc1\u4e66\u7ba1\u7406\n\u4f7f\u7528\u53ef\u4fe1\u7684CA\u9881\u53d1\u8bc1\u4e66\uff1a\u786e\u4fdd\u6240\u6709\u8bc1\u4e66\u90fd\u7531\u53d7\u4fe1\u4efb\u7684CA\u9881\u53d1\uff0c\u4e0d\u4f7f\u7528\u81ea\u7b7e\u540d\u8bc1\u4e66\u3002\n\u7ba1\u7406\u8bc1\u4e66\u94fe\uff1a\u786e\u4fdd\u8bc1\u4e66\u94fe\u6b63\u786e\u6392\u5e8f\uff0c\u5305\u542b\u6240\u6709\u4e2d\u95f4CA\u8bc1\u4e66\uff0c\u5e76\u9a8c\u8bc1\u5176\u5b8c\u6574\u6027\u3002\n\u5b9a\u671f\u66f4\u65b0\u8bc1\u4e66\uff1a\u5b9a\u671f\u66f4\u65b0\u548c\u66ff\u6362\u8bc1\u4e66\uff0c\u786e\u4fdd\u5b83\u4eec\u4e0d\u8fc7\u671f\uff0c\u5e76\u8bbe\u7f6e\u63d0\u9192\u673a\u5236\u901a\u77e5\u8bc1\u4e66\u5230\u671f\u3002\n3. \u5bc6\u94a5\u7ba1\u7406\n\u4f7f\u7528\u5f3a\u5bc6\u94a5\uff1a\u4f7f\u75282048\u4f4d\u6216\u66f4\u5f3a\u7684RSA\u5bc6\u94a5\uff0c\u6216\u8005\u4f7f\u7528\u7b49\u6548\u5b89\u5168\u7ea7\u522b\u7684ECC\u5bc6\u94a5\u3002\n\u4fdd\u62a4\u79c1\u94a5\uff1a\u786e\u4fdd\u79c1\u94a5\u7684\u5b89\u5168\u5b58\u50a8\u548c\u8bbf\u95ee\u63a7\u5236\uff0c\u4f7f\u7528\u786c\u4ef6\u5b89\u5168\u6a21\u5757\uff08HSM\uff09\u6216\u53ef\u4fe1\u5e73\u53f0\u6a21\u5757\uff08TPM\uff09\u6765\u4fdd\u62a4\u79c1\u94a5\u3002\n4. \u914d\u7f6e\u6539\u8fdb\n\u4f18\u5148\u4f7f\u7528\u5f3a\u52a0\u5bc6\u7b97\u6cd5\uff1a\u5728\u670d\u52a1\u5668\u914d\u7f6e\u4e2d\u4f18\u5148\u9009\u62e9\u66f4\u5f3a\u7684\u52a0\u5bc6\u7b97\u6cd5\uff0c\u786e\u4fdd\u4f20\u8f93\u5c42\u7684\u5b89\u5168\u6027\u3002\n\u914d\u7f6e\u8bc1\u4e66\u540a\u9500\u68c0\u67e5\uff1a\u786e\u4fdd\u670d\u52a1\u5668\u914d\u7f6e\u542f\u7528\u8bc1\u4e66\u540a\u9500\u68c0\u67e5\uff08\u5982OCSP\u6216CRL\uff09\uff0c\u9632\u6b62\u4f7f\u7528\u88ab\u540a\u9500\u7684\u8bc1\u4e66\u3002", "target": {"__typename": "ServiceVulnTargetType", "host": "10.249.180.1", "port": 8181, "protocol": "TCP"}, "detail": "\u7ecf\u8fc7\u5bf9\u4ee5\u4e0b\u76ee\u6807\u8fdb\u884c\u626b\u63cf\u6d4b\u8bd5\uff1a\n```\n10.249.180.1:8181\n```\n\u53d1\u73b0\u5b58\u5728\u8be5\u6f0f\u6d1e\u3002\n\n\n\n\n\n\n\n\u53d1\u73b0 `TLS Ver` \u7684\u503c\u4e3a\n```\n769\n```\n\n", "__typename": "VulnResultType"}], "__typename": "VulnResultListType"}, "__typename": "AggregatedVulnResultType"}], "__typename": "AggregatedVulnResultListType"}, "__typename": "VulnResultListType"}}]}}}, "config": {"project_id": 1, "ip_ids": [], "web_ids": [], "xprocess_ids": [], "vuln_ids": [], "report_name": "\u7edf\u4e00\u5f00\u6237\u7b49\u4fdd\u6f0f\u626b\u7684\u626b\u63cf\u4efb\u52a1\u62a5\u8868_HTML", "report_title": "\u7edf\u4e00\u5f00\u6237\u7b49\u4fdd\u6f0f\u626b\u7684\u626b\u63cf\u4efb\u52a1\u62a5\u8868_HTML", "report_type": "XPROCESS", "lang": "ZH_CN", "report_file_type": ["HTML"], "polymer": "ASSET", "output_form": "SOLO", "options": ["VULN_SEVERITY", "VULN_POSITION", "VULN_CATEGORY", "VULN_EXPOSURE", "VULN_DETAIL", "VULN_IMPACT", "VULN_SOLUTION", "VULN_POC", "VULNERABILITY_RESULT"], "baseline_host_assess_result_filter": ["PASS", "FAILED", "ERROR", "UNKNOWN"], "baseline_checklist_assess_result_filter": ["PASS", "FAILED", "ERROR", "UNKNOWN"], "asset_severity_filter": ["HIGH", "MEDIUM"], "asset_alive_filter": ["ALIVE"], "asset_type_filter": ["HOST", "WEBSITE"], "scan_host_result_alive_filter": ["UP", "UNKNOWN", "DOWN"], "vuln_severity_filter": ["CRITICAL", "HIGH", "MEDIUM"], "vuln_definiteness_filter": ["CERTAINLY_100", "CERTAINLY_99", "CERTAINLY_98", "CERTAINLY_97", "CERTAINLY_95", "CERTAINLY_80", "CERTAINLY_75", "CERTAINLY_70", "CERTAINLY_50"], "vuln_status_filter": ["UNHANDLED", "VERIFYING", "FIXING", "REVERIFYING", "FIXED"], "vuln_tag_filter": [], "time_unit_filter": null}, "timestamp": "2025-10-21T02:11:59.201449+00:00", "i18n": {}, "chapter": "VULN", "part": "HOST", "sub_files": null}</script><!doctype html><html><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1,shrink-to-fit=no"><link rel="shortcut icon" href="/favicon.ico"></head><body><noscript>You need to enable JavaScript to run this app.</noscript><div id="root"></div></body></html><script src="./statics/i18n.js"></script><script src="./statics/vendor.js"></script><script src="./statics/main.js"></script>运行显示未识别到漏洞
最新发布