English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22026
À§Çèµµ 20
Æ÷Æ® 80, ¡¦
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í CERN httpd·Î Àß ¾Ë·ÁÁø W3C httpd 3.0 À¥¼­¹ö´Â ¿¡·¯ ¸Þ½ÃÁö¸¦ º¸¿©ÁÙ ¶§ °¡»ó À¥ µð·ºÅ丮¿¡ ´ëÇÑ ½ÇÁ¦ Path ¸íÀ» ³ëÃâ½ÃŲ´Ù. Attacker°¡ URL¿¡ Á¸ÀçÇÏÁö ¾Ê´Â ÆÄÀÏÀ» ¿äûÇÒ ¶§ ¼­¹ö´Â cgi-bin µð·ºÅ丮¿Í °°Àº ÂüÁ¶µÈ µð·ºÅ丮·ÎÀÇ ¿ÏÀüÇÑ ½ÇÁ¦ Á´·Î¸íÀ» º¸¿©ÁØ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/4384.php
http://www.securityfocus.com/vdb/bottom.html?vid=936
ÇØ°áÃ¥ CERN httpd´Â ´õ ÀÌ»ó Áö¿øµÇÁö ¾Ê±â ¶§¹®¿¡ Apache(www.apache.org) À¥¼­¹ö¸¦ »ç¿ëÇÏ¿©¾ß ÇÑ´Ù. ÀÌ ¹®Á¦ÀÇ Á¶Ä¡¸¦ À§Çؼ­´Â W3C À¥»çÀÌÆ® (http://www.w3.org/Daemon/User/Error.html)¿¡ ³ª¿Í ÀÖ´Â ´ë·Î ¿¡·¯ ¸Þ¼¼Áö ºÎºÐÀ» ÀûÀýÇÏ°Ô ¼öÁ¤ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2000-0079 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)