English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21701
À§Çèµµ 20
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í phpinfo.php ½ºÅ©¸³Æ®°¡ ÇØ´ç À¥ ¼­¹ö »ó¿¡¼­ ¹ß°ßµÈ´Ù. ´Ù¾çÇÑ ¼ÒÇÁÆ®¿þ¾î ÆÐÅ°ÁöµéÀº ¾îÇø®ÄÉÀ̼ÇÀÇ µðÆúÆ® ¼³Ä¡ °úÁ¤¿¡¼­ À¥ root³ª ±× ÇÏÀ§ µð·ºÅ丮µé ¾Æ·¡¿¡ phpinfo.php ½ºÅ©¸³Æ®¸¦ ¼³Ä¡ÇÒ ¼ö ÀÖ´Ù. ÀÌ ½ºÅ©¸³Æ®´Â phpinfo() ÇÔ¼ö¸¦ È£ÃâÇÔÀ¸·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ¹Î°¨ÇÑ Á¤º¸¸¦ °¡Á®°¥ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. Phpinfo()´Â ¿î¿µÃ¼Á¦ ¹× À¥ ¼­¹ö ȯ°æ, PHP ±¸¼º, Àý´ë °æ·Î¸íµé, ¼³Á¤ ¿É¼ÇµéÀÇ Àü¿ª ¹× Áö¿ª º¯¼öµé, HTTP Çì´õ µî°ú °°Àº Á¾ÇÕÀûÀÎ ½Ã½ºÅÛ È¯°æ Á¤º¸¸¦ °¡Áø À¥ ÆäÀÌÁö¸¦ »ý¼ºÇÑ´Ù. ÀÌ Á¤º¸´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÇØ´ç À¥ ¼­¹ö¿¡ ´ëÇØ Á» ´õ ±¸Ã¼ÀûÀÎ °ø°ÝÀ» ¼öÇàÇÏ´Â µ¥ µµ¿òÀ» ÁÙ ¼ö ÀÖ´Ù.

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
¸ðµç HTTP ¼­¹ö ¸ðµç ¹öÀü
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ ÇÊ¿äÇÏÁö ¾Ê´Ù¸é À¥ µð·ºÅ丮µé·ÎºÎÅÍ phpinfo.php ½ºÅ©¸³Æ®¸¦ Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2002-1149 (CVE)
°ü·Ã URL 5789,5942,7313 (SecurityFocus)
°ü·Ã URL 10178,10335,11758,17741 (ISS)