English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 29118
À§Çèµµ 40
Æ÷Æ® 80, ...
ÇÁ·ÎÅäÄÝ TCP
ºÐ·ù Printer
»ó¼¼¼³¸í Xerox WorkCentre ÀåºñÀÇ ¹öÀü Á¤º¸¿¡ µû¸£¸é ÇØ´ç Àåºñ¿¡´Â ´ÙÁßÀÇ Ãë¾àÁ¡µéÀÌ Á¸ÀçÇÑ´Ù. Xerox WorkCentre´Â º¹»ç, ÇÁ¸°ÆÃ, ½ºÄµ, email, Æѽº¿Í ÀÎÅÍ³Ý Æѽº¿¡ »ç¿ëµÇ´Â Ä÷¯ ÇÁ¸°ÅÍÀÌ´Ù. Xerox WorkCentre ¿©·¯ ¹öÀüµéÀº ¿©·¯ °¡Áö ¿øÀÎÀ¸·Î ÀÎÇÑ ´ÙÁßÀÇ Ãë¾àÁ¡µé¿¡ Ãë¾àÇÏ´Ù. ÀÌ Ãë¾àÁ¡µéÀº ¼­ºñ½º °ÅºÎ °ø°Ý°ú Cross-Site Scripting °ø°ÝµéÀ» Æ÷ÇÔÇÏ¿© »ç¿ëÀÚ ÀÎÁõÀ» ¿ìȸÇϰųª ºñÀΰ¡µÈ ¾×¼¼½º¸¦ ȹµæÇÏ´Â µ¥ µµ¿ëµÉ ¼ö ÀÖ´Ù.

* ¾Ë¸²: ÀÌ Á¡°ËÇ׸ñÀº ÀÌ Ãë¾àÁ¡À» Á¡°ËÇϱâ À§ÇØ ÀÚü ³»Àå À¥ ¼­¹ö·ÎºÎÅÍ ÃßÃâµÈ Xerox WorkCentreÀÇ ¸ðµ¨ Á¤º¸¿Í ¼ÒÇÁÆ®¿þ¾î ¹öÀü Á¤º¸¸¸À» È®ÀÎÇÑ´Ù. µû¶ó¼­ °ÅÁþ ¾ç¼º¹ÝÀÀ(False Positive)À» º¸ÀÏ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://secunia.com/advisories/16467
http://secunia.com/advisories/16467
http://securitytracker.com/id?1014429
http://secunia.com/advisories/15970
http://www.osvdb.org/17765
http://www.osvdb.org/17766

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Xerox WorkCentreÀÇ ¿©·¯ ¹öÀüµé
ÇØ°áÃ¥ ´ÙÀ½ Xerox º¸¾È °Ô½Ã¹°À» ÂüÁ¶ÇÏ¿© P22¿Í P23 ÆÐÄ¡µéÀ» Àû¿ëÇÏ¿©¾ß ÇÑ´Ù:
http://www.xerox.com/downloads/usa/en/c/cert_XRX05_006.pdf
http://www.xerox.com/downloads/usa/en/c/cert_XRX05_007.pdf
°ü·Ã URL CVE-2005-2645,CVE-2005-2200,CVE-2005-2201,CVE-2005-2646 (CVE)
°ü·Ã URL 14187 (SecurityFocus)
°ü·Ã URL 21294 (ISS)