English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21061
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹ö¿¡ '/cgi-bin/MachineInfo' CGI°¡ ¼³Ä¡µÇ¾î ÀÖ´Ù.
¸î¸î IRIX ½Ã½ºÅ۵鿡 µðÆúÆ®·Î ¼³Ä¡µÇ´Â CGI ½ºÅ©¸³Æ®ÀÎ MachineInfo´Â ÀÛµ¿ÁßÀÎ machine¿¡ °üÇÑ ÀÚ¼¼ÇÑ Á¤º¸¸¦ Á¦°øÇÑ´Ù. ÀÌ Á¤º¸´Â ÇÁ·Î¼¼¼­, ¸Þ¸ð¸®¸¦ Æ÷ÇÔÇÏ¿© ¼³Ä¡µÇ¾î ÀÖ´Â Çϵå¿þ¾îµéÀÇ type°ú speed¸¦ Æ÷ÇÔÇϰí ÀÖ´Ù. ÀÌ Á¤º¸°¡ Attacker¿¡°Ô´Â ½Ã½ºÅÛ¿¡ ´ëÇÑ Á÷Á¢ÀûÀ̰í Á¤¹ÐÇÑ °ø°ÝÀ» ¼öÇàÇÒ ¼ö ÁÁÀº Á¤º¸µéÀÌ µÉ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.cert.org/advisories/CA-1997-12.html
http://www.iss.net/security_center/static/1730.php

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ À¥¼­¹öÀÇ /cgi-bin µð·ºÅ丮·Î ºÎÅÍ MachineInfo ÆÄÀÏÀ» »èÁ¦ÇÑ´Ù.
°ü·Ã URL CVE-1999-1067 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)