Ãë¾àÁ¡ID |
21885 |
À§Çèµµ |
40 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
CGI |
»ó¼¼¼³¸í |
ÇØ´ç Invision Power Board´Â ck Àμö¿¡ ÀÖ´Â SQL ÁÖÀÔ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. Invision Power Board´Â Invision Power Services »ç¿¡¼ ¹èÆ÷ÇÏ´Â PHP ±â¹ÝÀÇ À¥ Æ÷·³(forum) ¼ÒÇÁÆ®¿þ¾î ÆÐÅ°ÁöÀÌ´Ù. Invision Power Board 2.1¿¡¼ 2.1.5 ±îÁöÀÇ ¹öÀüµéÀº ´ÙÁßÀÇ Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. ÀÌ Ãë¾àÁ¡µéÀº ¿ø°ÝÁöÀÇ °ø°ÝÀÚ¿¡ ÀÇÇØ ½ºÅ©¸³Æ® ÁÖÀÔ ¹× SQL ÁÖÀÔ °ø°ÝµéÀ» ¼öÇàÇϰųª Ãë¾àÇÑ ½Ã½ºÅÛÀ» Àå¾ÇÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù.
1) "search.php" ½ºÅ©¸³Æ®¿¡ ÀÖ´Â "lastdate" Àμö·Î Àü´ÞµÈ ÀÔ·ÂÀº "preg_replace()" È£Ãâ·Î »ç¿ëµÇ¾î Áö±â Àü¿¡ ÀûÀýÇÏ°Ô ÇÊÅ͸µµÇÁö ¾Ê´Â´Ù. ÀÌ´Â "e" ÆÐÅÏ ¼öÁ¤ÀÚ¸¦ ÅëÇØ ÀÓÀÇÀÇ PHP Äڵ带 ÁÖÀÔÇÏ¿© ½ÇÇàÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù. 2) "index.php" ½ºÅ©¸³Æ®¿¡ ÀÖ´Â "ck" Àμö·Î Àü´ÞµÈ ÀÔ·ÂÀº SQL ÁúÀÇ·Î »ç¿ëµÇ¾î Áö±â Àü¿¡ ÀûÀýÇÏ°Ô ÇÊÅ͸µµÇÁö ¾Ê´Â´Ù. ÀÌ´Â ÀÓÀÇÀÇ SQL ÄÚµå(32 ¹®ÀÚµé·Î Á¦ÇѵÊ)¸¦ ÁÖÀÔÇÔÀ¸·Î½á SQL ÁúÀǵéÀ» Á¶ÀÛÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù. ¶ÇÇÑ "admin.php" ½ºÅ©¸³Æ®·Î Àü´ÞµÈ "name" Àμö¸¦ ÅëÇØ ÀÓÀÇÀÇ PHP ½ºÅ©¸³Æ®µéÀ» °ü¸®ÀÚµéÀÌ Æ÷ÇÔ(Include)ÇÏ´Â °ÍÀÌ °¡´ÉÇÏ´Ù. 3) HTML ¹× ½ºÅ©¸³Æ® Äڵ带 Æ÷ÇÔÇÏ´Â GIF Çì´õ¸¦ °¡Áø ¾ÇÀÇÀûÀÎ JPEG À̹ÌÁö¸¦ ¾÷·ÎµåÇÒ ¼ö ÀÖ´Â ¹®Á¦°¡ Á¸ÀçÇÑ´Ù. ÀÌ´Â ¾ÇÀÇÀûÀÎ À̹ÌÁö°¡ Microsoft Internet Explorer ºê¶ó¿ìÀú¸¦ ÅëÇØ º¸¿©Áú ¶§ ¿µÇâÀ» ¹Þ´Â »çÀÌÆ®ÀÇ È¯°æ ÇÏ¿¡¼ »ç¿ëÀÚ ºê¶ó¿ìÀúÀÇ ¼¼¼ÇÀ¸·Î ÀÓÀÇÀÇ HTML ¹× ½ºÅ©¸³Æ® Äڵ带 ½ÇÇàÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù.
* Âü°í »çÀÌÆ®: http://forums.invisionpower.com/index.php?showtopic=213374 http://www.securityfocus.com/archive/1/431990/30/0/threaded http://secunia.com/advisories/19830/
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Invision Power Services, Invision Power Board 2.1¿¡¼ 2.1.5 ±îÁöÀÇ ¹öÀüµé ¸ðµç ¿î¿µÃ¼Á¦ ¸ðµç ¹öÀü |
ÇØ°áÃ¥ |
Invision Power Services À¥ »çÀÌÆ®ÀÎ http://forums.invisionpower.com/index.php?showtopic=213374 À» ÂüÁ¶ÇÏ¿© IPB 2.x.x 04-25-06 º¸¾È ¾÷µ¥ÀÌÆ®¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù. |
°ü·Ã URL |
CVE-2006-2059,CVE-2006-2060,CVE-2006-2061 (CVE) |
°ü·Ã URL |
17690,17695 (SecurityFocus) |
°ü·Ã URL |
26070,26071,26072 (ISS) |
|