English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 29089
À§Çèµµ 40
Æ÷Æ® 80
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç Edimax Access Point´Â µðÆúÆ® ¹éµµ¾î °èÁ¤À» Æ÷ÇÔÇϰí ÀÖ´Ù.
Æß¿þ¾î ¹öÀü 2.40a-00°¡ žÀçµÈ Edimax 7205APL ¹«¼± Access Point´Â Çϵå ÄÚµùµÇ¾î Áö¿ï ¼ö ¾ø´Â µðÆúÆ® °èÁ¤('guest'/'1234')À» Æ÷ÇÔÇÑ Ã¤ Ãâ½ÃµÇ¾ú´Ù. ÀÌ °èÁ¤Àº Àåºñ·Î ·Î±×ÀÎÇÏ¿© ¼³Á¤»óŸ¦ ¹é¾÷ÇÏ´Â µ¥ »ç¿ëµÉ ¼ö ÀÖ´Ù. ÀÌ ¼³Á¤»óÅÂ(config.bin)´Â ¸ðµç »ç¿ëÀÚµé°ú ±×µéÀÇ ÆÐ½º¿öµåµéÀ» Æ÷ÇÔÇϰí ÀÖ¾î °ø°ÝÀÚ°¡ °ü¸®ÀÚ·Î Àåºñ¿¡ ·Î±×ÀÎÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. º¸°íµÈ Ãë¾àÇÑ Àåºñ´Â Æß¿þ¾î ¹öÀü 2.40a-00 À̾úÁö¸¸ ´Ù¸¥ ¹öÀüµéµµ À¯»çÇÑ ¹éµµ¾î °èÁ¤µéÀ» Æ÷ÇÔÇϰí ÀÖÀ» ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/archive/1/365685
http://www.securitytracker.com/alerts/2004/Jun/1010467.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Edimax 7205APL Wireless Access Point 2.40a-00
Microsoft Windows Any version
ÇØ°áÃ¥ Edimax»ç´Â ´õ ÀÌ»ó Edimax 7205APL Wireless Access Point¸¦ Áö¿øÇÏÁö ¾Ê´Â´Ù.

Àӽà Á¶Ä¡¹æ¹ýÀ¸·Î ´ÙÀ½ °úÁ¤À» °ÅÃÄ µðÆúÆ®ÀÇ Guest °èÁ¤ »ç¿ëÀÚ¸í°ú ÆÐ½º¿öµå¸¦ º¯°æÇÒ ¼ö ÀÖ´Ù:

1. ¼³Á¤»óÅÂÀÇ ¹é¾÷À» »ý¼ºÇÑ´Ù (config.bin).
2. 16Áø ÆíÁý±â¸¦ °¡Áö°í config.bin ÆÄÀÏÀ» ÆíÁýÇÑ´Ù.
3. ¹®ÀÚ¿­ guest¸¦ »õ·Î¿î »ç¿ëÀÚ¸íÀ¸·Î ¹Ù²Û´Ù (¹®ÀÚ¿­ÀÇ ±æÀ̸¦ °í·ÁÇÏ¿©, 5ÀÚ¸®·Î ÇÏ¿©¾ß ÇÔ).
4. ¹®ÀÚ¿­ 1234¸¦ »õ·Î¿î °èÁ¤¸í¿¡ ´ëÇÑ »õ·Î¿î ÆÐ½º¿öµå·Î ¹Ù²Û´Ù (¹®ÀÚ¿­ÀÇ ±æÀ̸¦ °í·ÁÇÏ¿©, 4ÀÚ¸®·Î ÇÏ¿©¾ß ÇÔ).
5. »õ·Î¿î config.binÀ» ÀúÀåÇÑ´Ù.
6. ¹«¼±·£ ¶ó¿ìÅÍ¿¡ »õ·Î¿î config.binÀ» º¹¿øÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL 10512 (SecurityFocus)
°ü·Ã URL 16391 (ISS)