English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 25005
À§Çèµµ 30
Æ÷Æ® 1521, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù DB
»ó¼¼¼³¸í Oracle µ¥ÀÌÅͺ£À̽º°¡ »ý¼ºµÉ ¶§ °ü¸® ¸ñÀûÀ̳ª ¿î¿µ ¸ñÀûÀ¸·Î °èÁ¤µéÀÌ »ý¼ºµÈ´Ù. ÀÌµé °èÁ¤µé¿¡ ´ëÇÑ µðÆúÆ® ÆÐ½º¿öµåµéÀº Àß ¾Ë·ÁÁ® À־ µðÆúÆ® ÆÐ½º¿öµåµéÀÌ ³²°ÜÁ® ÀÖ´Ù¸é ÀáÀçÀûÀ¸·Î º¸¾È»ó¿¡ À§ÇèÀÌ µÉ ¼ö ÀÖ´Ù. µðÆúÆ® ÆÐ½º¿öµåµéÀ» °¡Áø °èÁ¤µéÀÇ Á¸Àç´Â ¼³Ä¡µÈ OracleÀÇ ¹öÀüÀ̳ª ¿É¼Çµé¿¡ µû¶ó ´Ù¸¦ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://docs.oracle.com/cd/B10501_01/win.920/a95490/username.htm
http://www.vulnerabilityassessment.co.uk/default_oracle_passwords.htm

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Oracle Database ¼­¹ö
ÇØ°áÃ¥ Áï½Ã »ç¿ëÀÚÀÇ ÆÐ½º¿öµå¸¦ µðÆúÆ®°¡ ¾Æ´Ñ ´Ù¸¥ °ÍÀ¸·Î ¹Ù²Ù¾î¾ß ÇÑ´Ù.
»ç¿ëÀÚÀÇ ÆÐ½º¿öµå¸¦ ¹Ù²Ù±â À§Çؼ­´Â 'sqlplus' ¸í·ÉÀ» ÀÌ¿ëÇØ¼­ ÇØ´ç »ç¿ëÀÚ ¸íÀ¸·Î Oracle ¼­¹ö¿¡ ·Î±×ÀÎÇÏ¿©¾ß ÇÑ´Ù. ±×¸®°í ´ÙÀ½°ú °°ÀÌ ÆÐ½º¿öµå¸¦ ¹Ù²Ù±â À§ÇÑ ¸í·ÉÀ» ½ÇÇàÇÑ´Ù.

alter user "dbsnmp" identified by "secretpwd";

À§ÀÇ ¸í·ÉÀº "dbsnmp" »ç¿ëÀÚÀÇ ÆÐ½º¿öµå¸¦ "secretpwd"·Î ¹Ù²Û´Ù.
°ü·Ã URL (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)