English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 23125
À§Çèµµ 30
Æ÷Æ® 139,445
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù SMB
»ó¼¼¼³¸í DameWare Mini Remote ControlÀÇ ¹öÀü Á¤º¸¿¡ µû¸£¸é ÇØ´ç ¼ÒÇÁÆ®¿þ¾î¿¡´Â Á¤º¸ ³ëÃâ Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù. DameWare Mini Remote ControlÀº ÁÖ·Î °ü¸®ÀÚµéÀ» À§ÇÑ ¿ëµµ·Î ¸¸µé¾îÁø °æ·®±ÞÀÇ ¿ø°Ý Á¦¾î ÇÁ·Î±×·¥ÀÌ´Ù. DameWare Mini Remote Control 4.9 ÀÌÇÏÀÇ ¹öÀüµéÀº ·ÎÄà °ø°ÝÀÚ°¡ ¹Î°¨ÇÑ Á¤º¸¸¦ °¡Á®°¡°Ô ÇØ ÁÙ ¼ö ÀÖ´Ù. DWRCS ÇÁ·Î¼¼½º¿¡¼­ PMDump¸¦ »ç¿ëÇؼ­ ¸Þ¸ð¸®¸¦ ÆÄÀÏ·Î ´ýÇÁ(dump)Çϸé Æнº¿öµå¸¦ Á¦¿ÜÇÑ ÇÁ·Î±×·¥ ¼³Á¤, »ç¿ëÀÚ¸í, ÀÎÁõ À¯Çü µîÀÇ Á¤º¸¸¦ ȹµæÇÒ ¼ö ÀÖ´Ù. Ŭ¶óÀ̾ðÆ®³ª ·ÎÄà ¸Ó½Å¿¡¼­ PMDump¸¦ »ç¿ëÇؼ­ DWRCC ÇÁ·Î¼¼½ºÀÇ ¸Þ¸ð¸®¸¦ ÆÄÀÏ·Î ´ýÇÁÇÏ¸é ¸ðµç »ç¿ëÀÚ, Æнº¿öµå, È£½ºÆ®¸í / IP, º°Äª°ú µµ¸ÞÀÎ À̸§ µîÀÇ Á¤º¸¸¦ ȹµæÇÒ ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº Á¡°ËÇϱâ À§ÇÑ ¿ø°ÝÁö È£½ºÆ®ÀÇ ·¹Áö½ºÆ®¸®¸¦ ¾×¼¼½ºÇÒ ¼ö ÀÖ´Â Guest ȤÀº ±× ÀÌ»óÀÇ ±ÇÇÑÀ» °¡Áø °èÁ¤À» ÇÊ¿ä·Î ÇÑ´Ù. ÀÌ·¯ÇÑ Á¶°ÇÀÌ ¾ÈµÇ¸é Á¡°ËÀ» ¼öÇàÇÒ ¼ö ¾øÀ¸¸ç ¸ðµç Ãë¾àÇÑ È£½ºÆ®µé¿¡ ´ëÇؼ­ °ÅÁþ À½¼º¹ÝÀÀ(False Negative)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://securitytracker.com/alerts/2005/Apr/1013725.html
http://www.securityfocus.com/archive/1/395987

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
DameWare Development LLC, DameWare Mini Remote Control 4.9 ÀÌÇÏ ¹öÀüµé
23125
ÇØ°áÃ¥ DameWare Products Development À¥ »çÀÌÆ®ÀÎ http://www.dameware.com/downloads ¿¡¼­ ÃֽŹöÀüÀÇ DameWare Mini Remote Control(4.9 ÀÌÈÄ)À¸·Î ¾÷±×·¹À̵å ÇÏ¿©¾ß ÇÑ´Ù.
°ü·Ã URL CVE-2005-1166 (CVE)
°ü·Ã URL 13199 (SecurityFocus)
°ü·Ã URL 20138 (ISS)