English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 24034
À§Çèµµ 30
Æ÷Æ® 5800,5801,5802
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù BackDoor
»ó¼¼¼³¸í ¿ø°Ý Á¦¾î ÇÁ·Î±×·¥ÀÎ VNC HTTP°¡ ¹ß°ßµÈ´Ù.
AT&T Laboratories Cambridge¿¡ ÀÇÇØ °³¹ßµÈ VNC (Virtual Network Computer)´Â À©µµ¿ìÁî, À¯´Ð½º, ±×¸®°í ¸ÅŲÅä½Ã¿Í °°Àº ¸¹Àº ±âÁ¾µé¿¡ »ç¿ëµÉ ¼ö ÀÖµµ·Ï µðÀÚÀÎµÈ ¿ø°Ý Á¦¾î ÇÁ·Î±×·¥ÀÌ´Ù. ¿ø°Ý Á¦¾î ÇÁ·Î±×·¥µéÀº ¿ø°ÝÁöÀÇ »ç¿ëÀÚ¿¡°Ô °ü¸®ÀûÀÎ ÀÛ¾÷µéÀ» ÇÒ ¼ö ÀÖµµ·Ï ÇØ ÁØ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/1894.php
http://www.uk.research.att.com/vnc/
http://www.securiteam.com/tools/Brute_forcing_VNC_passwords.html

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
À©µµ¿ìÁî, À¯´Ð½º, ¸ÅŲÅä½Ã Any version
ÇØ°áÃ¥ Àΰ¡µÇÁö ¾Ê¾Ò°Å³ª ÇÊ¿äÇÏÁö ¾Ê´Ù¸é VNC¸¦ Á¦°ÅÇØ¾ß ÇÑ´Ù.

¸¸¾à ÀÌ ÇÁ·Î±×·¥ÀÌ ½Ã½ºÅÛ¿¡¼­ ¹ß°ßµÇ°í ½Ã½ºÅÛ ¼ÒÀ¯ÀÚ¿¡ ÀÇÇØ ¼³Ä¡µÇÁö ¾Ê¾Ò´Ù¸é °ø°ÝÀÚ°¡ ÀÌ¹Ì ½Ã½ºÅÛÀ» ÇØÅ·Çß´Ù´Â °ÍÀ» ÀǹÌÇÑ´Ù. ÀÌ °æ¿ì ½Ã½ºÅÛÀ» À缳ġÇÏ°í ¸ðµç Àû¿ë °¡´ÉÇÑ º¸¾È FixµéÀ» ¼³Ä¡ÇØ¾ß ÇÑ´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)