English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21735
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç WPS Web-Portal-SystemÀº wps_shop.cgi ½ºÅ©¸³Æ®¿¡ ÀÖ´Â ¸í·É ½ÇÇà Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. WPS Web-Portal-SystemÀº µ¶ÀÏ°ú ÀÌÅ»¸®¾Æ¿¡¼­ »ç¿ëµÇ´Â CMS ÀÌ´Ù. WPS Web-Portal-System ¹öÀü 0.7.0Àº wps_shop.cgi ½ºÅ©¸³Æ®ÀÇ art Àμö·Î Àü´ÞµÈ »ç¿ëÀÚ°¡ Á¦°øÇÑ ÀԷ¿¡ ´ëÇÑ ºÎÀûÀýÇÑ °ËÁõÀ¸·Î ÀÎÇÏ¿© ¿ø°ÝÁöÀÇ °ø°ÝÀÚ°¡ ÀÓÀÇÀÇ ½Ã½ºÅÛ ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ½© ¸ÞŸ ¹®ÀÚµé('|' ȤÀº ';')À» »ðÀÔÇÏ¿© À¥ ¼­¹ö ÇÁ·Î¼¼½ºÀÇ ±ÇÇÑÀ» °¡Áö°í ½Ã½ºÅÛ »ó¿¡ ÀÓÀÇÀÇ ½© ¸í·ÉµéÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/archive/1/405100
http://www.securiteam.com/unixfocus/5BP0Q00GBG.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
WPS Web-Portal-System ¹öÀü 0.7.0
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ 2014³â 6¿ù ÇöÀç ¾÷±×·¹À̵峪 ÆÐÄ¡´Â ³ª¿Í ÀÖÁö ¾Ê´Ù. ´Ù¸¥ Á¦Ç°À» »ç¿ëÇÒ °ÍÀ» ±Ç°íÇÑ´Ù.
°ü·Ã URL CVE-2005-2290 (CVE)
°ü·Ã URL 14245 (SecurityFocus)
°ü·Ã URL 21356 (ISS)