English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22080
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í À¥¼­¹ö¿¡ remote·Î ¼­¹ö³»ÀÇ ÀÓÀÇÀÇ ÆÄÀÏÀ» Àоî¿Ã ¼ö ÀÖ´Â Ãë¾àÁ¡ÀÌ Á¸ÀçÇÏ¸ç ´ÙÀ½°ú °°ÀÌ °£´ÜÇÏ°Ô dotµéÀ» µ¡ºÙÀÓÀ¸·Î½á °¡´ÉÇÏ´Ù.

http://victim.com/../../winnt/boot.ini

ÀÌ Ãë¾àÁ¡Àº Alibaba À¥¼­¹öÀÇ ±¸¹öÀü¿¡ Á¸ÀçÇÑ´Ù. Alibaba´Â Windows 9x¿Í Windows NT¿ëÀ¸·Î CSM¿¡ ÀÇÇØ ¸¸µé¾îÁø »ó¿ë HTTP ¼­¹öÀÌ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/2175.php
ÇØ°áÃ¥ À¥¼­¹ö¸¦ ÃֽйöÀüÀ¸·Î ¾÷±×·¹À̵å Çϰųª ´Ù¸¥ Á¾·ùÀÇ À¥¼­¹ö·Î ±³Ã¼ÇÑ´Ù.
°ü·Ã URL CVE-1999-0776 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)