English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21203
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í 'bboard' ¼­ºí¸´ÀÌ /servlet/sunexamples.BBoardServlet¿¡ ¼³Ä¡µÇ¾î ÀÖ´Ù. SunÀÇ Java À¥¼­¹ö ¹öÀü 2.0°ú 1.1.3ÀÇ µðÆúÆ® ¼³Á¤Àº °ø°ÝÀÚ°¡ ¿ø°ÝÀ¸·Î À¥¼­¹ö°¡ ¼öÇàµÇ´Â ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù. À¥ °ü¸®ÀÚ ÇÁ·Î±×·¥Àº »ç¿ëÀÚ°¡ ½Ã½ºÅÛ »óÀÇ ÀÓÀÇÀÇ ÆÄÀÏÀÌ ÄÄÆÄÀÏÇÏ¿© ½ÇÇàÇϱâ À§ÇÑ ¼­ºí¸´À¸·Î ÁöÁ¤µÇµµ·Ï Çã¿ëÇØ ÁØ´Ù. °ø°ÝÀÚ´Â Java Web Server¿¡ ÇÔ²² µþ·ÁÀÖ´Â ¿¹Á¦ °Ô½ÃÆÇ ÇÁ·Î±×·¥À» »ç¿ëÇÏ¿© °Ô½ÃÆÇ¿¡ ¾ÇÀÇÀÇ JSP (Java Server Pages) Äڵ带 ¿Ã·Á ³õÀ» ¼ö ÀÖ´Ù. ÀÌ´Â WebAdmin À¯Æ¿¸®Æ¼¸¦ ÀÌ¿ëÇÏ¿© ½ÇÇàµÇ¾î Áú ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/5135.php
http://www.securityfocus.com/bid/1459

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
SunÀÇ Java À¥¼­¹ö ¹öÀü 2.0°ú 1.1.3
ÇØ°áÃ¥ ´ÙÀ½ URL¿¡¼­ ÃֽйöÀüÀÇ Java System Web Server·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:
http://www.oracle.com/technetwork/documentation/legacy-sun-iplanet-193465.html#webserver

ÀÌ ¹®Á¦´Â examples µð·ºÅ丮¿¡ ÀÖ´Â ¿¹Á¦µéÀ» °£´ÜÇÏ°Ô ¾ø¾ÚÀ¸·Î½á Á¦°ÅµÉ ¼ö ÀÖ´Ù.
°ü·Ã URL CVE-2000-0629 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)