English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 16013
À§Çèµµ 20
Æ÷Æ® 21
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù FTP
»ó¼¼¼³¸í FTP ¼­¹ö Á¢¼ÓÈÄ "CWD ~<username>"¿Í °°ÀÌ Command¸¦ ÁÖ¸é ÀÌ ¼­¹ö¿¡ »ç¿ëÀÚ°¡ Á¸ÀçÇÏ´ÂÁöÀÇ ¿©ºÎ¸¦ üũÇÒ ¼ö ÀÖ´Ù.
¿¹¸¦µé¾î, ´ÙÀ½°ú °°ÀÌ

CWD ~adm

Çϸé "550 /var/adm: No such file or directory"¿Í °°ÀÌ Real Path¿Í ÇÔ²² »ç¿ëÀÚ°¡ Á¸ÀçÇÏ´ÂÁöÀÇ ¿©ºÎ¸¦ ¾Ë ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://online.securityfocus.com/bid/2564
http://cgi.nessus.org/plugins/dump.php3?id=10082

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
Linux Any version
Unix Any version
FTP ¸ðµç ¹öÀü
ÇØ°áÃ¥ Vendor¿¡ ¹®ÀÇÇÏ¿© PatchÇϰųª ´Ù¸¥ FTP¼­¹ö·Î ±³Ã¼ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)