Ãë¾àÁ¡ID |
21651 |
À§Çèµµ |
30 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
ÇØ´ç PHPAuction ¼ÒÇÁÆ®¿þ¾î´Â ÀÎÁõ ¿ìȸ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. PHPAuction´Â Gianluca Baldo¿¡ ÀÇÇØ °³¹ßµÈ °ø°³ ¼Ò½º ¿Â¶óÀÎ °æ¸Å ¼ÒÇÁÆ®¿þ¾î ÆÐÅ°ÁöÀÌ´Ù. PHPAuction ¹öÀü 2.1 ¹× ±× ÀÌÀüÀÇ ¹öÀüµéÀº PHPAuction °ü¸®¿ë ÀÎÅÍÆäÀ̽º¿¡ ´ëÇÑ ¾×¼¼½º¸¦ Á¦¾îÇϴµ¥ »ç¿ëµÈ ÀÎÁõ ½Ã½ºÅÛÀÇ ¼³°è ¿À·ù·Î ÀÎÇÏ¿©, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ºñÀΰ¡µÈ °ü¸®ÀÚ ¾×¼¼½º¸¦ ÇÒ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¼¼¼Ç ÄíÅ° °ªÀ» °£´ÜÇÏ°Ô ÆíÁýÇÔÀ¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â PHPAuction ÀÎÁõ ½Ã½ºÅÛÀ» ¿ìȸÇÏ¿© °ü¸®ÀÚ ÀÎÅÍÆäÀ̽º¿¡ ´ëÇÑ ¾×¼¼½º¸¦ ¾ò¾î³¾ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://pentest.tele-consulting.com/advisories/04_12_21_phpauction.txt
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Gianluca Baldo, PHPAuction ¹öÀü 2.1°ú ±× ÀÌÀüÀÇ ¹öÀüµé Linux Any version Microsoft Windows Any version |
ÇØ°áÃ¥ |
PHPAuctionÀº ´õ ÀÌ»ó Áö¿øµÇÁö ¾Ê´Â´Ù. º¸¾ÈÀ» À§ÇØ enuuk auctionÀ¸·Î ´ëüÇϰųª, ´Ù¸¥ ¼Ö·ç¼ÇÀ¸·Î ´ëüÇÒ °ÍÀ» ±Ç°íÇÑ´Ù. http://www.phpauction.net/products/enuuk-auction-platform |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
12069 (SecurityFocus) |
°ü·Ã URL |
(ISS) |
|