English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21697
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç Simple PHP Blog´Â comments.php ½ºÅ©¸³Æ®¿¡ ÀÖ´Â µð·ºÅ丮 Ž»ö Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. Simple PHP Blog´Â PHP·Î Á¦ÀÛµÈ ¹«·á·Î »ç¿ë °¡´ÉÇÑ ¿ÀÇ ¼Ò½º À¥ ºí·Î±×(blog)ÀÌ´Ù. Simple PHP Blog ¹öÀü 0.3.7c¿Í ±× ÀÌÀü ¹öÀüµéÀº 'comments.php' ½ºÅ©¸³Æ®ÀÇ 'entry' Àμö·Î °Ç³×Áø »ç¿ëÀÚ°¡ Á¦°øÇÑ ÀԷ¿¡ ´ëÇÑ ºÎÀûÀýÇÑ ÇÊÅ͸µÀ¸·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ À¥ rootÀÇ ¿ÜºÎ¿¡ ÀÖ´Â ÆÄÀÏÀ» º¼ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. "dot dot" ½ÃÄö½ºµé(/../)À» Æ÷ÇÔÇÏ´Â Àß Á¶ÀÛµÈ URLÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â À¥ ¼­ºñ½ºÀÇ ±ÇÇÑÀ» °¡Áö°í À¥ root µð·ºÅ丮ÀÇ ¿ÜºÎ¿¡ ÀÖ´Â ÀÓÀÇÀÇ ÆÄÀϵéÀ» ÀÐ¾î ³¾ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://archives.neohapsis.com/archives/fulldisclosure/2005-01/0210.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Alexander Palmo, Simple PHP Blog ¹öÀü 0.3.7c¿Í ±× ÀÌÀü ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ ´ÙÀ½ Simple PHP Blog À¥ »çÀÌÆ®¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â Simple PHP BlogÀÇ °¡Àå ÃֽŠ¹öÀü(0.3.7r2 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù:

http://sourceforge.net/projects/sphpblog/
°ü·Ã URL CVE-2005-0214 (CVE)
°ü·Ã URL 12193 (SecurityFocus)
°ü·Ã URL 18802 (ISS)