English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 16157
À§Çèµµ 40
Æ÷Æ® 21
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù FTP
»ó¼¼¼³¸í ¿ø°Ý È£½ºÆ®¿¡ ¼³Ä¡µÈ SolarWinds Serv-UÀÇ ¹öÀüÀº 15.5/15.5 ÀÌÀüÀÔ´Ï´Ù. µû¶ó¼­ serv-u_15_5 ±Ç°í¿¡ ¾ð±ÞµÈ ¿©·¯ Ãë¾àÁ¡ÀÇ ¿µÇâÀ» ¹Þ½À´Ï´Ù.

- SolarWinds Serv-U´Â ÀÎÁõµÈ »ç¿ëÀÚ¿¡°Ô ºÎ¿©µÈ ±ÇÇÑ¿¡ µû¶ó ¿ø°Ý ÄÚµå ½ÇÇàÀÌ °¡´ÉÇÑ µð·ºÅ͸® Ž»ö Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. ÀÌ ¹®Á¦´Â »ç¿ëÀÚ ÀÎÁõÀ» ÇÊ¿ä·Î ÇÏ¸ç ¼ÒÇÁÆ®¿þ¾î ȯ°æ º¯¼ö°¡ ³²¿ëµÉ ¶§ ¹ß»ýÇÕ´Ï´Ù. ÀÌ Ãë¾àÁ¡¿¡ ´ëÇØ ÀÎÁõÀÌ ÇÊ¿äÇÕ´Ï´Ù(CVE-2024-45711).
- ÀÀ¿ë ÇÁ·Î±×·¥Àº XSS(Cross Site Scripting)¿¡ Ãë¾àÇÕ´Ï´Ù. »ç¿ëÀÚ ±ÇÇÑÀÌ ÀÖ´Â ÀÎÁõµÈ °ø°ÝÀÚ°¡ ÆäÀ̷εå·Î º¯¼ö¸¦ ¼öÁ¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. (CVE-2024-45714)

* Âü°í »çÀÌÆ®:
https://www.solarwinds.com/trust-center/security-advisories/cve-2024-45711
https://www.solarwinds.com/trust-center/security-advisories/cve-2024-45714

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Rhino Software, Inc., Serv-U FTP Server 15.5 ÀÌÀü ¹öÀüµé
Microsoft Windows Any version
ÇØ°áÃ¥ Serv-U À¥ »çÀÌÆ®ÀÎ http://www.serv-u.com/ ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Serv-UÀÇ °¡Àå ÃֽŠ¹öÀü (15.5 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2024-45711,CVE-2024-45714 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)