English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 21771
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í ÇØ´ç TikiWiki ¼ÒÇÁÆ®¿þ¾î´Â ´ÙÁßÀÇ µð·ºÅ丮 Ž»ö Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. Tiki CMS/Groupware(TikiWiki)´Â PHP·Î Á¦ÀÛµÈ ¹«·á·Î »ç¿ë °¡´ÉÇÑ Content Management System(CMS)ÀÎ µ¿½Ã¿¡ ±×·ì¿þ¾îÀÌ´Ù. TikiWiki 1.8.6 ±×¸®°í 1.9.1 ÀÌÀüÀÇ ¹öÀüµéÀº tiki-user_preferences.php ½ºÅ©¸³Æ®ÀÇ language Àμö, ±×¸®°í tiki-editpage.php ½ºÅ©¸³Æ®ÀÇ suck_url Àμö·Î Àü´ÞµÈ »ç¿ëÀÚ Á¦°ø ÀԷ¿¡ ´ëÇÑ ºÎÀûÀýÇÑ °ËÁõÀ¸·Î ÀÎÇÏ¿© ´ÙÁßÀÇ µð·ºÅ丮 Ž»ö Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡µéÀ» µµ¿ëÇÏ¿© À¥ ¼­¹ö ÇÁ·Î¼¼½ºÀÇ ±ÇÇÑÀ¸·Î Ãë¾àÇÑ ½Ã½ºÅÛ »ó¿¡ ÀÖ´Â ÀÓÀÇÀÇ ÆÄÀϵéÀ» Á¶È¸ÇÏ°í ÀÓÀÇÀÇ PHP ½ºÅ©¸³Æ® Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://sourceforge.net/project/shownotes.php?release_id=350764
http://www.securitytracker.com/alerts/2005/Nov/1015190.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Open-Source, TikiWiki 1.8.6 ÀÌÀüÀÇ ¹öÀüµé
Open-Source, TikiWiki 1.9.1 ÀÌÀüÀÇ ¹öÀüµé
¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü
ÇØ°áÃ¥ TikiWiki ´Ù¿î·Îµå À¥ »çÀÌÆ®ÀÎ http://tikiwiki.org/Download ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â TikiWikiÀÇ °¡Àå ÃֽŠ¹öÀü(1.8.6 ȤÀº 1.9.1 ȤÀº ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2005-1925 (CVE)
°ü·Ã URL 15390,15392 (SecurityFocus)
°ü·Ã URL 23095,23099 (ISS)