English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21336
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥ ¼­¹ö »óÀÇ osTicket ¹öÀü¿¡ µû¸£¸é, osTicket ÇÁ·Î±×·¥¿¡´Â open.php ½ºÅ©¸³Æ® »óÀÇ ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.
osTicket Àº MS Windows, Unix, Linux ¿î¿µÃ¼Á¦ ±â¹ÝÀÇ ¿ÀÇ ¼Ò½º Áö¿ø ƼÄÏ(support ticket) ÇÁ·Î±×·¥ÀÌ´Ù. ÀϺΠosTicket ¹öÀü¿¡¼­ 'aliases' ¸¦ »ç¿ëÇÏ´Â ¸ÞÀÏÀ» ¼ö½ÅÇϵµ·Ï ¼³Á¤µÈ °æ¿ì 'open.php' ½ºÅ©¸³Æ® »ó¿¡¼­ ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ ¹ß»ýÇÒ ¼ö ÀÖ´Ù. ¿ø°ÝÁö °ø°ÝÀÚµéÀº "contact E-Mail" ÁÖ¼ÒµéÀ»'support' ÁÖ¼Ò·Î »ï¾Æ ƼÄÏÀ» ¿ÀÇÂÇÏ´Â ¹æ¹ýÀ¸·Î, ´ë»ó ½Ã½ºÅÛ »ó¿¡¼­ ¸ÞÀÏ ·çÇÁ¸¦ ¹ß»ý½ÃÄÑ ´ë»ó ½Ã½ºÅÛÀÌ ¼­ºñ½º °ÅºÎ »óÅ¿¡ ºüÁöµµ·Ï ÇÒ ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç ¿ø°ÝÁö À¥ ¼­¹ö »óÀÇ osTicket ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.osticket.com/forums/showthread.php?t=301

* ¿µÇâÀ» ¹Þ´Â ¼ÒÇÁÆ®¿þ¾î:
osTicket 1.2.7 ÀÌÇÏ ¹öÀüµé
Any operating system Any version
ÇØ°áÃ¥ ´ÙÀ½ osTicket À¥ »çÀÌÆ®¿¡¼­ osTicketÀÇ °¡Àå ÃֽйöÀü (1.2.8 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.osticket.com/downloads.php
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)