English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21079
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç ¼­¹ö¿¡ ¹éµµ¾î CGIÀÎ rwwwshell.plÆÄÀÏÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù.
Reverse-WWW-Tunnel-Backdoor¶ó ºÎ¸£´Â ÀÌ CGI´Â ¹Ì¸® ¼³Á¤µÈ ½Ã°£°£°ÝÀ¸·Î ¼­¹ö¸ðµå·Î ¶È°°Àº À̸§ÀÇ ½ºÅ©¸³Æ®¸¦ ¼öÇàÇÏ´Â ¿ÜºÎ¼­¹ö¿¡ Á¢¼ÓÇÑ´Ù. ÀÌ·¯ÇÑ Á¢¼ÓÀº ¸Å ½Ã°£°£°ÝÀ¸·Î ÀϾ¼­ ¼­¹ö·Î ºÎÅÍ ¸í·ÉÀ» ¹Þ¾Æ ÇØ´ç À¥¼­¹ö¿¡¼­ ÀÌ ¸í·ÉÀÌ ¼öÇàµÈ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/2293.php
http://packetstormsecurity.org/groups/thc/fw-backd.htm

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ ÀÌ ¹éµµ¾î°¡ ¹ß°ßµÇ¾ú´Ù´Â °ÍÀº ½Ã½ºÅÛÀÌ Attacker¿¡ ÀÇÇØ ħÀÔ´çÇß´Ù´Â °ÍÀ» ÀǹÌÇϹǷΠÀÌ CGI¸¦ Á¦°ÅÇÏ´Â °ÍÀº ¹°·ÐÀÌ°í ¼­¹öÀÇ ´Ù¸¥ ¹éµµ¾î³ª ħÀÔÈçÀûÀ» Á¶»çÇØ º¼ Çʿ䰡 ÀÖ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)