English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 210170
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç ½Ã½ºÅÛ¿¡´Â WordPressÀÇ 3.1.1. ÀÌÀü ¹öÀüÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. ÇØ´ç ¹öÀüÀº Å©·Î½º »çÀÌÆ® ½ºÅ©¸³ÆÃ(XSS) Ãë¾àÁ¡°ú cross-site request forgery (XSRF) Ãë¾àÁ¡, ¼­ºñ½º °ÅºÎ(DoS) Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

* Âü°í »çÀÌÆ®:
https://wordpress.org/news/2011/04/wordpress-3-1-1/
https://codex.wordpress.org/Version_3.1.1

* ¿µÇâ¹Þ´Â Ç÷§Æû:
WordPress prior to 3.1.1
Any operating system Any version
ÇØ°áÃ¥ ´ÙÀ½ WordPress ´Ù¿î·Îµå À¥ ÆäÀÌÁö http://wordpress.org/download/ ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â ÀÌ Ãë¾àÁ¡À» ÇØ°áÇÑ WordPress ¹öÀü(3.1.1 ¶Ç´Â ±× ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2011-4956,CVE-2011-4957 (CVE)
°ü·Ã URL 73868,78357 (SecurityFocus)
°ü·Ã URL (ISS)