Ãë¾àÁ¡ID |
21701 |
À§Çèµµ |
20 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
phpinfo.php ½ºÅ©¸³Æ®°¡ ÇØ´ç À¥ ¼¹ö »ó¿¡¼ ¹ß°ßµÈ´Ù. ´Ù¾çÇÑ ¼ÒÇÁÆ®¿þ¾î ÆÐÅ°ÁöµéÀº ¾îÇø®ÄÉÀ̼ÇÀÇ µðÆúÆ® ¼³Ä¡ °úÁ¤¿¡¼ À¥ root³ª ±× ÇÏÀ§ µð·ºÅ丮µé ¾Æ·¡¿¡ phpinfo.php ½ºÅ©¸³Æ®¸¦ ¼³Ä¡ÇÒ ¼ö ÀÖ´Ù. ÀÌ ½ºÅ©¸³Æ®´Â phpinfo() ÇÔ¼ö¸¦ È£ÃâÇÔÀ¸·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ¹Î°¨ÇÑ Á¤º¸¸¦ °¡Á®°¥ ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. Phpinfo()´Â ¿î¿µÃ¼Á¦ ¹× À¥ ¼¹ö ȯ°æ, PHP ±¸¼º, Àý´ë °æ·Î¸íµé, ¼³Á¤ ¿É¼ÇµéÀÇ Àü¿ª ¹× Áö¿ª º¯¼öµé, HTTP Çì´õ µî°ú °°Àº Á¾ÇÕÀûÀÎ ½Ã½ºÅÛ È¯°æ Á¤º¸¸¦ °¡Áø À¥ ÆäÀÌÁö¸¦ »ý¼ºÇÑ´Ù. ÀÌ Á¤º¸´Â ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÇØ´ç À¥ ¼¹ö¿¡ ´ëÇØ Á» ´õ ±¸Ã¼ÀûÀÎ °ø°ÝÀ» ¼öÇàÇÏ´Â µ¥ µµ¿òÀ» ÁÙ ¼ö ÀÖ´Ù.
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: ¸ðµç HTTP ¼¹ö ¸ðµç ¹öÀü ¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü |
ÇØ°áÃ¥ |
ÇÊ¿äÇÏÁö ¾Ê´Ù¸é À¥ µð·ºÅ丮µé·ÎºÎÅÍ phpinfo.php ½ºÅ©¸³Æ®¸¦ Á¦°ÅÇÏ¿©¾ß ÇÑ´Ù. |
°ü·Ã URL |
CVE-2002-1149 (CVE) |
°ü·Ã URL |
5789,5942,7313 (SecurityFocus) |
°ü·Ã URL |
10178,10335,11758,17741 (ISS) |
|