Ãë¾àÁ¡ID |
21336 |
À§Çèµµ |
30 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
ÇØ´ç À¥ ¼¹ö »óÀÇ osTicket ¹öÀü¿¡ µû¸£¸é, osTicket ÇÁ·Î±×·¥¿¡´Â open.php ½ºÅ©¸³Æ® »óÀÇ ¼ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. osTicket Àº MS Windows, Unix, Linux ¿î¿µÃ¼Á¦ ±â¹ÝÀÇ ¿ÀÇ ¼Ò½º Áö¿ø ƼÄÏ(support ticket) ÇÁ·Î±×·¥ÀÌ´Ù. ÀϺΠosTicket ¹öÀü¿¡¼ 'aliases' ¸¦ »ç¿ëÇÏ´Â ¸ÞÀÏÀ» ¼ö½ÅÇϵµ·Ï ¼³Á¤µÈ °æ¿ì 'open.php' ½ºÅ©¸³Æ® »ó¿¡¼ ¼ºñ½º °ÅºÎ Ãë¾àÁ¡ÀÌ ¹ß»ýÇÒ ¼ö ÀÖ´Ù. ¿ø°ÝÁö °ø°ÝÀÚµéÀº "contact E-Mail" ÁÖ¼ÒµéÀ»'support' ÁÖ¼Ò·Î »ï¾Æ ƼÄÏÀ» ¿ÀÇÂÇÏ´Â ¹æ¹ýÀ¸·Î, ´ë»ó ½Ã½ºÅÛ »ó¿¡¼ ¸ÞÀÏ ·çÇÁ¸¦ ¹ß»ý½ÃÄÑ ´ë»ó ½Ã½ºÅÛÀÌ ¼ºñ½º °ÅºÎ »óÅ¿¡ ºüÁöµµ·Ï ÇÒ ¼ö ÀÖ´Ù.
* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÇØ´ç ¿ø°ÝÁö À¥ ¼¹ö »óÀÇ osTicket ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://www.osticket.com/forums/showthread.php?t=301
* ¿µÇâÀ» ¹Þ´Â ¼ÒÇÁÆ®¿þ¾î: osTicket 1.2.7 ÀÌÇÏ ¹öÀüµé Any operating system Any version |
ÇØ°áÃ¥ |
´ÙÀ½ osTicket À¥ »çÀÌÆ®¿¡¼ osTicketÀÇ °¡Àå ÃֽйöÀü (1.2.8 ȤÀº ÀÌÈÄ)À» ±¸ÇÏ¿© ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù: http://www.osticket.com/downloads.php |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
(SecurityFocus) |
°ü·Ã URL |
(ISS) |
|