English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 22395
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù WWW
»ó¼¼¼³¸í ÇØ´ç MailEnable HTTPMail ¼­ºñ½º´Â Authorization Çì´õ¿¡ ÀÖ´Â ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. MailEnable´Â Microsoft Windows Ç÷§ÆûµéÀ» À§ÇÑ POP3 ±×¸®°í SMTP ¼­¹öÀÌ´Ù. MailEnable Enterprise 1.04 ÀÌÇÏÀÇ ¹öÀüµé°ú Professional 1.54 ÀÌÇÏÀÇ ¹öÀüµéÀº HTTPMail ¼­ºñ½º (MEHTTPS.exe)¿¡ ÀÖ´Â ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. Àß Á¶ÀÛµÈ HTTP Authorization¸¦ º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÀÌ Ãë¾àÁ¡À» µµ¿ëÇÏ¿© ¿µÇâÀ» ¹Þ´Â È£½ºÆ® »ó¿¡ ÀÓÀÇÀÇ Äڵ带 ½ÇÇà½Ãų ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://marc.theaimsgroup.com/?l=bugtraq&m=111445834220015&w=2

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
MailEnable Pty. Ltd, MailEnable Enterprise Edition 1.04 ÀÌÇÏÀÇ ¹öÀüµé
MailEnable Pty. Ltd, MailEnable Professional Edition 1.54 ÀÌÇÏÀÇ ¹öÀüµé
Microsoft Windows Any version
ÇØ°áÃ¥ MailEnable Hotfix ´Ù¿î·Îµå À¥ ÆäÀÌÁöÀÎ http://www.mailenable.com/hotfix/ ¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Â MailEnable Professional ±×¸®°í Enterprise¸¦ À§ÇÑ 2005³â 4¿ù 22ÀÏÀÚ HTTPMail Fix¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2005-1348 (CVE)
°ü·Ã URL 13350 (SecurityFocus)
°ü·Ã URL 20610 (ISS)