References https://www.nopsec.com/resources/just-in-time/just-in-time-bulletin-cve-2022-31199-netwrix-insecure-object-deserialization-rce/ https://nvd.nist.gov/vuln/detail/cve-2022-31199 https://algora.io/claims/e6SNtboNcSsdd27h https://netwrix.com/en/resources/news/netwrix-statement-on-cve202231199/ https://github.com/developerfred/CVE-2022-31199 https://www.rapid7.com/db/vulnerabilities/netwrix-auditor-cve-2022-31199/ https://bishopfox.com/blog/netwrix-auditor-advisory https://community.netwrix.com/t/adv-2022-003-vulnerabilities-in-netwrix-auditor/3467 https://attackerkb.com/topics/pyAu61ax5G/cve-2022-31199 https://www.sentinelone.com/vulnerability-database/cve-2022-31199/ https://blog.talosintelligence.com/breaking-the-silence-recent-truebot-activity/ https://success.trendmicro.com/en-US/solution/KA-0021875 https://www.ithome.com.tw/news/154667 https://habr.com/ru/companies/first/articles/715540/
Related Vulnerabilities天锐绿盾审批系统 /trwfe/login.jsp/.%2e/config/findAuditors.do 信息泄露漏洞天锐绿盾审批系统 findAuditors.do 信息泄露漏洞Netwrix Auditor 存在不安全的对象反序列化漏洞(CVE-2022-31199)