Ãë¾àÁ¡ID |
21718 |
À§Çèµµ |
40 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
ÇØ´ç TWiki ¼ÒÇÁÆ®¿þ¾î´Â rev Àμö¸¦ ÅëÇÑ ¸í·É ÁÖÀÔ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. TWiki´Â Perl·Î Á¦À۵Ǿî ÇÁ·ÎÁ§Æ® °³¹ß °ø°£, ¹®¼ °ü¸® ½Ã½ºÅÛ, ±×¸®°í Áö½Ä º£À̽º¸¦ ¼öÇàÇϱâ À§ÇØ °í¾ÈµÈ À¥ ±â¹ÝÀÇ Çù¾÷ Ç÷§ÆûÀÌ´Ù. TWikiÀÇ TWiki 02-Sep-2004 ÀÌÇÏÀÇ ¹öÀüµéÀº /cgi-bin/view/Main/TWikiUsers ½ºÅ©¸³Æ®ÀÇ 'rev' Àμö·Î °Ç³×Áø »ç¿ëÀÚ°¡ Á¦°øÇÑ ÀԷ¿¡ ´ëÇÑ ºÎÀûÀýÇÑ ÇÊÅ͸µÀ¸·Î ÀÎÇÏ¿© ¸í·É ÁÖÀÔ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ½©(shell) ¸ÞŸ¹®ÀÚµéÀ» Æ÷ÇÔÇÏ´Â Àß Á¶ÀÛµÈ URL ¿äûÀ» º¸³» À¥ ¼¹öÀÇ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ½Ã½ºÅÛ ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://twiki.org/cgi-bin/view/Codev/SecurityAlertExecuteCommandsWithRev http://secunia.com/advisories/16820/ http://marc.theaimsgroup.com/?l=bugtraq&m=112680475417550&w=2
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: TWiki.org, TWiki Release 02-Sep-2004 ÀÌÇÏÀÇ ¹öÀüµé ¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü |
ÇØ°áÃ¥ |
TWiki ´Ù¿î·Îµå À¥ »çÀÌÆ®ÀÎ http://twiki.org/cgi-bin/view/Codev/DownloadTWiki ¿¡¼ ±¸ÇÒ ¼ö ÀÖ´Â TWikiÀÇ °¡Àå ÃֽŠ¹öÀü(TWikiRelease04Sep2004 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù. |
°ü·Ã URL |
CVE-2005-2877 (CVE) |
°ü·Ã URL |
14834 (SecurityFocus) |
°ü·Ã URL |
22280 (ISS) |
|