¿öµåÇÁ·¹½º ´ñ±Û ÀԷ¶õ, XSS(Cross-Site Script) Ãë¾àÁ¡ ¹ß»ý °¡´É
[º¸¾È´º½º ¹Î¼¼¾Æ] ¿öµåÇÁ·¹½º(Wordpress)¿¡¼ Ãë¾àÁ¡À» º¸¿ÏÇÑ ±ä±Þ º¸¾È ÆÐÄ¡¸¦ °ø°³Çß´Ù.
À̹ø Ãë¾àÁ¡Àº ¿öµåÇÁ·¹½º ´ñ±Û ÀԷ¶õ¿¡ XSS(Cross-Site Script) Ãë¾àÁ¡ÀÌ ¹ß»ýÇÒ ¼ö ÀÖÀ¸¸ç, °ø°ÝÀÚ°¡ ÀÛ¼ºÇÑ ´ñ±ÛÀ» °ü¸®ÀÚ°¡ ¿¶÷ÇÒ °æ¿ì À¥¼¿ ¾÷·Îµå ¹× °ü¸®ÀÚ °èÁ¤ Å»Ãë µîÀÇ ÇÇÇظ¦ ÀÔÀ» ¼ö ÀÖ´Ù.
¿öµåÇÁ·¹½º 4.2 ÀÌÇÏ ¹öÀüÀÏ °æ¿ì ÇØ´ç Ãë¾àÁ¡¿¡ ³ëÃâµÉ ¼ö Àֱ⠶§¹®¿¡ 4.2.1 ¹öÀüÀ¸·Î ¾÷µ¥ÀÌÆ®ÇÏ´Â °ÍÀÌ ¾ÈÀüÇÏ´Ù.
¨ç Dashboard(¾Ë¸²ÆÇ) -> Updates(¾÷µ¥ÀÌÆ®) ¨è Update Now(Áö±Ý ¾÷µ¥ÀÌÆ®) Ŭ¸¯
ÀÌ¿Í °ü·ÃÇÑ ±âŸ ¹®ÀÇ»çÇ×Àº ¾Æ·¡ÀÇ Âü°í»çÀÌÆ®¸¦ È®ÀÎÇϰųª Çѱ¹ÀÎÅͳÝÁøÈï¿ø ÀÎÅͳÝħÇØ´ëÀÀ¼¾ÅÍ(±¹¹ø¾øÀÌ 118)·Î ¹®ÀÇÇÏ¸é µÈ´Ù.
[Âü°í»çÀÌÆ®]
https://wordpress.org/news/2015/04/wordpress-4-2-1/
[¿ë¾î ¼³¸í]
XSS(Cross-Site Script) : °Ô½ÃÆÇ, À¥ ¸ÞÀÏ µî¿¡ »ðÀÔµÈ ¾ÇÀÇÀûÀÎ ½ºÅ©¸³Æ®¿¡ ÀÇÇØ ÆäÀÌÁö°¡ ±úÁö°Å³ª ´Ù¸¥ »ç¿ëÀÚÀÇ »ç¿ëÀ» ¹æÇØÇϰųª ÄíÅ° ¹× ±âŸ °³ÀÎÁ¤º¸¸¦ ƯÁ¤ »çÀÌÆ®·Î Àü¼Û½ÃÅ°´Â °ø°Ý(Ãâó : Çѱ¹Á¤º¸Åë½Å±â¼úÇùȸ)
[¹Î¼¼¾Æ ±âÀÚ(boan5@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>