English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21027
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹ö¿¡ "cgitest.exe" CGI°¡ ³²¾ÆÀÖ´Ù. ÀÌ CGI´Â Buffer Overflow ¹®Á¦Á¡À» °¡Áö°í ÀÖ¾î ÀÌ °ø°ÝÀ» ÇÑ Attacker°¡ À¥¼­¹öÀÇ ±ÇÇÑÀ¸·Î ¼­¹ö»óÀÇ ÀÓÀÇÀÇ ¸í·ÉÀ» ¼öÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/bid/5706
http://www.iss.net/security_center/static/10102.php

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ /cgi-bin µð·ºÅ丮ÀÇ cgitest.exe ÆÄÀÏÀ» Á¦°ÅÇÑ´Ù.
°ü·Ã URL CVE-2002-2146 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)