English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21087
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹ö¿¡ 'test-cgi' cgi°¡ ÀνºÅçµÇ¾î ÀÖ´Ù.
test-cgi ÇÁ·Î±×·¥Àº ±¸¹öÀüÀÇ NCSA³ª Apache À¥¼­¹ö ÆÐŰÁö¿¡ ÀÖ´Â CGI·Î ½Ã½ºÅÛ »óÀÇ ÀÓÀÇÀÇ ÆÄÀϵéÀ» ¸®½ºÆÃÇØ º¼ ¼ö ÀÖ´Â Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù. ÀÌ Ãë¾àÁ¡¿¡ ´ëÇÑ ÇØÅ·¹æ¹ýÀº ¸Å¿ì Àß ¾Ë·ÁÁ® ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/149.php
http://www.atstake.com/research/advisories/1996/test-cgi-vulnerability.txt

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ test-cgi ÆÄÀÏÀ» cgi-bin µð·ºÅ丮·Î ºÎÅÍ Áï½Ã Á¦°ÅÇØ¾ß ÇÑ´Ù. ÀνºÅç½Ã ¼³Ä¡µÈ ´Ù¸¥ ¿¹Á¦ CGI ½ºÅ©¸³Æ®µéµµ ÀÖ´Ù¸é °°ÀÌ Á¦°ÅÇÑ´Ù. ÀÌ ½ºÅ©¸³Æ®µéÀÌ »ç¿ëµÈ´Ù¸é º¥´õ¿¡¼­ Á¦°øµÇ´Â ÃֽйöÀüÀ¸·Î ¾÷±×·¹À̵å ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL CVE-1999-0070 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)