English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21100
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç À¥¼­¹ö¿¡ Webcom(www.webcom.se)ÀÇ CGI Guestbook(wguest.exe°ú rguest.exe ÆÄÀÏ)ÀÌ ¼³Ä¡µÇ¾î ÀÖ´Ù. ÀÌ CGI´Â Attacker°¡ Anonymous Internet Account (IIS ¼­¹öÀÇ IUSR_MACHINENAME) ¿Í NT¼­¹ö³»ÀÇ NTFS read ±ÇÇÑÀÌ ÀÖ´Â ÀÓÀÇÀÇ ÅØ½ºÆ® ÆÄÀÏÀÇ Path¸¸ ¾È´Ù¸é ¿øÇÏ´Â ÅØ½ºÆ® ÆÄÀÏÀ» Àо ¼ö ÀÖ´Â ¹®Á¦Á¡ÀÌ ÀÖ´Ù. File Permission ü°è°¡ ¾ø´Â Windows 95/98¿¡¼­´Â ¹°·Ð ¸ðµç ÅØ½ºÆ®À» Àо ¼ö ÀÖ´Ù.

¿¹¸¦µé¾î ´ÙÀ½°ú °°ÀÌ Çϸé

http://server/cgi-bin/wguest.exe?template=c:\boot.ini¿¡ ´ëÇÑ Request·Î´Â RemoteÀÇ À¥¼­¹öÀÇ boot.ini ÆÄÀÏÀ» Àо ¼ö ÀÖ°í
http://server/cgi-bin/rguest.exe?template=c:\winnt\system32\$winnt$.inf

¶ó´Â Request¸¦ ÁÖ¸é $winnt$.inf ÆÄÀÏÀ» Àо ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/2072.php

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ ÀÌ·¯ÇÑ ¹®Á¦°¡ ÇØ°áµÈ ¾÷µ¥ÀÌÆ® ¹öÀüÀ» ±¸ÇÒ ¶§±îÁö À¥¼­¹ö·Î ºÎÅÍ WebCom Guestbook CGI ÄÄÆ÷³ÍÆ®µéÀ» Á¦°ÅÇØ µÎ¾î¾ß ÇÑ´Ù.
°ü·Ã URL CVE-1999-0467 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)