English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 29010
À§Çèµµ 30
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù CGI
»ó¼¼¼³¸í Interscan Viruswall °ü¸® ÄܼÖÀÇ CGIÀÇ Ãë¾àÁ¡ÀÌ ¾ÇÀÇÀûÀÎ »ç¿ëÀÚµéÀÌ ¼³Á¤º¯°æÀ» °¡´ÉÇÏ°Ô ÇØ ÁØ´Ù.
À©µµ¿ìÁî NT¿ë Trend Micro»çÀÇ InterScan VirusWallÀº Áö³ª´Ù´Ï´Â Email, HTTP, FTP Æ®·¡Çȵ鿡 ´ëÇÑ ¹ÙÀÌ·¯½º º¸È£ ¼ÒÇÁÆ®¿þ¾îÀÌ´Ù. ÀÌ ¼ÒÇÁÆ®¿þ¾î´Â À¥ºê¶ó¿ìÁ ÅëÇØ ȯ°æ¼³Á¤À» º¯°æÇÒ ¼ö ÀÖ´Â ±â´ÉÀ» °¡Áö°í ÀÖ´Ù. ±× ÀÎÅÍÆäÀ̽º´Â IISÀÇ cgi-bin µð·ºÅ丮 ¾Æ·¡ ¼³Ä¡µÇ¾î ÀÖ´Â CGI ÇÁ·Î±×·¥µéÀ» ÅëÇØ Á¶À۵ȴÙ. ºÒÇàÈ÷µµ ¹öÀü 3.51 ÀÌÇÏ¿¡ ÀÖ´Â CGI ÇÁ·Î±×·¥µéÀº ¾ÇÀÇÀûÀÎ AttackerµéÀÌ ¾î¶² ÀÎÁõ¾øÀÌ ¿ø°ÝÀ¸·Î ¼ÒÇÁÆ®¿þ¾îÀÇ ¼³Á¤À» ¼öÁ¤ÇÒ ¼ö ÀÖ°Ô ÇØ ÁØ´Ù.

* Âü°í »çÀÌÆ®:
http://www.securityfocus.com/bid/2808
http://xforce.iss.net/xforce/xfdb/6641

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
InterScan VirusWall
ÇØ°áÃ¥ Trend Micro»çÀÇ Áö¿øÆÀÀº ÀÌ ¹®Á¦°¡ ¹öÀü 5.0¿¡¼­´Â °íÃÄÁú °ÍÀ¸·Î ÀÀ´äÇß´Ù. ¶ÇÇÑ Áö¿øÆÀÀº 2001³â 7¿ù Áß¿¡ Patch¸¦ ¸±¸®ÁîÇÒ °ÍÀ̶ó°í ¹ßÇ¥Çß´Ù. Patch°¡ ¸±¸®ÁîµÉ ¶§±îÁö °¡Àå ÁÁÀº ÇØ°áÃ¥Àº º¸È£µÈ ³×Æ®¿÷³»¿¡ VirusWall ¼ÒÇÁÆ®¿þ¾î¸¦ ¼³Ä¡ÇÏ´Â °ÍÀÌ´Ù. (Áï, ¹æÈ­º® ȤÀº À¥¼­¹öÀÇ Á¢±ÙÁ¦¾î ±â´ÉÀ» »ç¿ë).
VirusWallÀÇ ÃֽйöÀüÀº ´ÙÀ½ »çÀÌÆ®¿¡¼­ ´Ù¿î·Îµå ÇÒ ¼ö ÀÖ´Ù.
http://downloadcenter.trendmicro.com/index.php?prodid=13
°ü·Ã URL CVE-2001-0791 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)