English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21036
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹ö¿¡ "dfire.cgi" CGI°¡ ¼³Ä¡µÇ¾î ÀÖ´Ù. "dfire.cgi" Dragon-
Fire IDS¿¡ ÀÖ´Â CGI·Î ¿ÜºÎ¿¡¼­ shell metacharacter¸¦ »ç¿ëÇÏ¿© http µ¥¸óÀÇ ±ÇÇÑÀ¸·Î ¼­¹ö»óÀÇ ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡
À» °¡Áö°í ÀÖ´Ù.

¡Ø BUGTRAQ:19990804 NSW Dragon Fire gets drowned

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/bid/564

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ /cgi-bin µð·ºÅ丮¿¡ ÀÖ´Â dfire.cgi ÆÄÀÏÀ» »èÁ¦ÇÑ´Ù.
°ü·Ã URL CVE-1999-0913 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)