还有CVE-2010-3856 http://marc.info/?l=full-disclosure&m=128776663124692&w=2 CVE-2010-3904 http://www.exploit-db.com/exploits/15285/ 这个也很nb