English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 12083
À§Çèµµ 30
Æ÷Æ® 389
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù LDAP
»ó¼¼¼³¸í ÇØ´ç CommuniGate Pro LDAP ¼­ºñ½º´Â ¹öÀü 5.0.7¿¡ Á¸ÀçÇÏ´Â ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. CommuniGate Pro´Â »ó¿ë e-mail ¹× groupware ¾îÇø®ÄÉÀ̼ÇÀÌ´Ù. CommuniGate Pro Core ¼­¹ö ¹öÀü 5.0.7À» Æ÷ÇÔÇÑ ¿©·¯ ¹öÀüµéÀº LDAP (Lightweight Directory Access Protocol) ±¸Çö¿¡ ÀÖ´Â ¿À·ù·Î ÀÎÇÏ¿© ¼­ºñ½º °ÅºÎ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. Àß Á¶ÀÛµÈ DN(Distinguished Names) ÇʵåµéÀ» Æ÷ÇÔÇÑ ºñÁ¤»óÀûÀÎ ¿äûµéÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ¿µÇâÀ» ¹Þ´Â LDAP ¼­ºñ½º¸¦ Å©·¡½¬ ½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/041941.html
http://www.securityfocus.com/archive/1/archive/1/423968/100/0/threaded
http://securitytracker.com/id?1015587
http://secunia.com/advisories/18701

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Stalker Software »ç, CommuniGate Pro ¹öÀü 5.0.7À» Æ÷ÇÔÇÑ ¿©·¯ ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ CommuniGate Pro À¥ ÆäÀÌÁöÀÎ http://www.stalker.com/CommuniGatePro/default.html ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â CommuniGate Pro ServerÀÇ °¡Àå ÃֽŠ¹öÀü(5.0.8 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2006-0566 (CVE)
°ü·Ã URL 16501 (SecurityFocus)
°ü·Ã URL (ISS)