Ãë¾àÁ¡ID |
22432 |
À§Çèµµ |
40 |
Æ÷Æ® |
80, ... |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
WWW |
»ó¼¼¼³¸í |
ÇØ´ç ColdFusion MX ÇÁ·Î±×·¥Àº ÀÌÁß ÀÎÄÚµùµÈ NULL ¹ÙÀÌÆ®¸¦ ÅëÇÑ Á¤º¸ ³ëÃâ Ãë¾àÁ¡¿¡ Ãë¾àÇÏ´Ù. Abobe Macromedia ColdFusionÀº À¥ ¾îÇø®ÄÉÀ̼ǵéÀ» °³¹ßÇÏ°í ¹èÄ¡Çϱâ À§ÇÑ Á¦Ç°ÀÌ´Ù. Adobe ColdFusion MX 7¿¡¼ 7.0.2±îÁöÀÇ ¹öÀüµé, ±×¸®°í JRun 4°¡ Microsoft IIS »ó¿¡¼ ÀÛµ¿ÇÒ ¶§, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ¹Î°¨ÇÑ Á¤º¸¸¦ ȹµæÇÒ ¼ö ÀÖ´Ù. CFM ÆÄÀÏ°ú °°Àº ColdFusion ÆÄÀϸíÀ¸·Î ÀÌÁß URL ÀÎÄÚµùµÈ NULL ¹ÙÀÌÆ®°¡ µÚµû¸£´Â ÆÄÀϸíÀ» º¸³¿À¸·Î½á, ¿ø°ÝÁöÀÇ °ø°ÝÀÚ´Â ÀÓÀÇÀÇ ÆÄÀϵéÀ» Àаųª µð·ºÅ丮µéÀ» ¸ñ·ÏÈÇϰųª ¼Ò½º Äڵ带 Àо ¼ö ÀÖ´Ù. --- * Âü°í »çÀÌÆ®: http://www.adobe.com/support/security/bulletins/apsb07-02.html http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=466 http://archives.neohapsis.com/archives/fulldisclosure/2007-01/0199.html http://securitytracker.com/id?1017490 http://secunia.com/advisories/23668
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: Adobe, ColdFusion MX 7.0.2 Adobe, ColdFusion MX 7.0.1 Adobe, ColdFusion MX 7 Adobe, JRun 4.0 Microsoft Windows Any version |
ÇØ°áÃ¥ |
´ÙÀ½ Adobe º¸¾È °Ô½Ã¹° APSB07-02¸¦ ÂüÁ¶ÇÏ¿© ÀÌ Ãë¾àÁ¡¿¡ ´ëÇÑ ÆÐÄ¡¸¦ Àû¿ëÇÏ¿©¾ß ÇÑ´Ù: http://www.adobe.com/support/security/bulletins/apsb07-02.html |
°ü·Ã URL |
CVE-2006-5858 (CVE) |
°ü·Ã URL |
21978 (SecurityFocus) |
°ü·Ã URL |
31411 (ISS) |
|