| Ãë¾àÁ¡ID |
21160 |
| À§Çèµµ |
40 |
| Æ÷Æ® |
80, ... |
| ÇÁ·ÎÅäÄÝ |
TCP |
| ºÐ·ù |
CGI |
| »ó¼¼¼³¸í |
ÇØ´ç ¼¹ö¿¡ 'whois_raw.cgi' CGI°¡ ¼³Ä¡µÇ¾î ÀÖ´Ù. CDomain(http://www.cdomain.com)Àº Whois ¼ºñ½º·ÎÀÇ À¥±â¹Ý °ÔÀÌÆ®¿þÀ̸¦ Á¦°øÇÏ´Â »ó¿ë CGI ÆÐŰÁöÀÌ´Ù. ±×·¯³ª, 2.5 ÀÌÀüÀÇ UNIX¿ë ¹öÀüµé¿¡ ¿ÜºÎ attacker°¡ httpd µ¥¸óÀÇ ±ÇÇÑÀ¸·Î ¼¹ö³»ÀÇ ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Â Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Ù.
Ãë¾àÇÑ cgi°¡ ¼³Ä¡µÇ¾î whois_raw.cgi°¡ ¼¹ö¿¡¼ ÀÛµ¿ÁßÀÎÁö¸¦ ¾Ë¾Æº¸±â À§Çؼ´Â ´ÙÀ½°ú °°ÀÌ À¥ºê¶ó¿ìÁ ÀÌ¿ëÇÏ¿© ½Ã½ºÅÛ »óÀÇ password ÆÄÀÏÀ» accessÇÏ¿© º¼ ¼ö ÀÖ´Ù.
http://target.com/cgi-bin/whois_raw.cgi?fqdn=%0Acat%20/etc/passwd
* Âü°í »çÀÌÆ®: http://www.securityfocus.com/bid/304 http://www.iss.net/security_center/static/2251.php
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Web Server |
| ÇØ°áÃ¥ |
/cgi-bin³» whois_raw.cgi ÆÄÀÏÀ» Á¦°ÅÇϰųª ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù. 2.4 ÀÌÇÏÀÇ ¹öÀü¿¡¼ Ãë¾àÁ¡ÀÌ ÀÖÀ¸¸ç ¹öÀü 2.5ÀÌ»ó°ú Windows NT ¹öÀüµé¿¡¼´Â ÀÌ·± Á¾·ùÀÇ Ãë¾àÁ¡Àº Á¸ÀçÇÏÁö ¾Ê´Â´Ù. |
| °ü·Ã URL |
CVE-1999-1063 (CVE) |
| °ü·Ã URL |
(SecurityFocus) |
| °ü·Ã URL |
(ISS) |
|