English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21206
À§Çèµµ 40
Æ÷Æ® 80, ¡¦
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í À¥¼­¹ö¿¡ "plusmail" CGI°¡ ¼³Ä¡µÇ¾î ÀÖ´Ù. PowerScripts PlusMailÀº À¥»çÀÌÆ® °ü¸®¸¦ À§ÇÑ GUI(±×·¡ÇÇÄà »ç¿ëÀÚ ÀÎÅÍÆäÀ̽º) ÀÌ´Ù.
PlusMail¿¡¼­ÀÇ ÆÐ½º¿öµå ÆÄÀÏÀº Attacker°¡ ¿ø°ÝÀ¸·Î ÆÐ½º¿öµå¸¦ ¹Ù²Ü ¼ö ÀÖµµ·Ï ÇØ ÁÖ´Â ºÎÀûÀýÇÑ ÆÛ¹Ì¼ÇÀ¸·Î ¼³Á¤µÇ¾î ÀÖ´Ù. Attacker´Â PlusMailÀ» »ç¿ëÇÏ¿© À¥»çÀÌÆ®¸¦ ¼öÁ¤Çϰųª ½Ã½ºÅÛ³»ÀÇ ÀÓÀÇÀÇ ¸í·ÉÀ» ¼öÇàÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/4396.php
http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-01-8&msg=20000111214313.24266.qmail@securityfocus.com

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Web Server
ÇØ°áÃ¥ 2014³â 6¿ù ÇöÀç ¹®Á¦ÀÇ ÇØ°á¹æ¹ýÀº ³ª¿Í ÀÖÁö ¾Ê´Ù. /cgi-bin µð·ºÅ丮·ÎºÎÅÍ CGI¸¦ »èÁ¦ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2000-0074 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)