| Ãë¾àÁ¡ID |
15004 |
| À§Çèµµ |
30 |
| Æ÷Æ® |
79 |
| ÇÁ·ÎÅäÄÝ |
TCP |
| ºÐ·ù |
FINGER |
| »ó¼¼¼³¸í |
Finger ¼ºñ½º¿¡ ½Ã½ºÅÛ¿¡ ÀÖ´Â Àüü °èÁ¤ ¸®½ºÆ®°¡ µð½ºÇ÷¹ÀÌ µÉ ¼ö ÀÖ´Â ¹ö±×°¡ Á¸ÀçÇÑ´Ù. ´ÙÀ½°ú °°Àº ¿äû¿¡ ÀÇÇØ¼ °¡´ÉÇÏ´Ù.
Finger "0 1 2 3 4 5 6 7 8 9"@target.com
ÀÌ ¸®½ºÆ®´Â Attacker¿¡°Ô »ç¿ëÀÚ °èÁ¤À» ÀÌ¿ëÇÏ¿© Brute force °ø°ÝÀ» Çϱâ À§ÇÑ ÁÁÀº ÀÚ·á°¡ µÉ ¼ö ÀÖ´Ù.
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Linux Any version Unix Any version |
| ÇØ°áÃ¥ |
¼¹öÀÇ Account Á¤º¸´Â Cracker¿¡°Ô ¸Å¿ì À¯¿ëÇÑ Á¤º¸·Î »ç¿ëµÇ¾îÁú ¼ö ÀÖ¾î À§ÇèÇÏ´Ù. ƯÈ÷ ÀÌ ¹æ¹ýÀ» ÀÌ¿ëÇÑ Query·Î µî·ÏÈÄ »ç¿ëÇÏÁö ¾Ê´Â Account Á¤º¸¸¦ ¾ò¾î¿Ã ¼ö ÀÖ¾î Login try, Spooing ¶Ç´Â ÀÌ¿Í °áºÎÇÑ ¸¹Àº °ø°Ý¹æ¹ýµéÀ» ÀÌ¿ëÇÏ¿© Account¸¦ ȹµæÇÒ ¼ö ÀÖ´Ù. µû¶ó¼ ¼ºñ½º¸¦ »ç¿ëÁßÁöÇϰųª PatchÇÏ¿©¾ß ÇÑ´Ù.
¡Ø UNIX ½Ã½ºÅÛ: /etc/inetd.conf ÆÄÀÏ¿¡¼ finger ¶óÀÎÀ» Comment Out
1. /etc/inetd.conf ÆÄÀÏ¿¡ ÀÖ´Â finger ¿£Æ®¸®¸¦ ÁÖ¼®Ã³¸® ÇÑ´Ù. 2. ´ÙÀ½ ¸í·É°ú °°ÀÌÇÏ¿© inetd ÇÁ·Î¼¼½º¿¡°Ô ¼öÁ¤µÈ ³»¿ëÀ» ÀÐ¾î µéÀ̵µ·Ï ÇÑ´Ù: kill -HUP <inetd process id>
*Solaris 10, Solaris 11ÀÇ °æ¿ì: # svcadm disable svc:/network/finger:default
*Enterprise Linux 6.4, CentOS 6.4, Fedora 19: /etc/xinetd.d/fingerÀ» ¿¾î disable=yes·Î ¼³Á¤ÇÑ ÈÄ xinetd¸¦ Àç½ÃÀÛÇÑ´Ù. |
| °ü·Ã URL |
(CVE) |
| °ü·Ã URL |
(SecurityFocus) |
| °ü·Ã URL |
(ISS) |
|