[º¸¾È´º½º ¹®°¡¿ë] ÇöÁö ½Ã°¢À¸·Î 9¿ù 8ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 8ÀÏ¿¡¼ 9ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
1. CVE-2016-4375
HPE Integrated Lights-Out 3(iLO 3) Æß¿þ¾î 1.88 ÀÌÀü ¹öÀü, Integrated Lights-Out 4(iLO 4) Æß¿þ¾î 2.44 ÀÌÀü ¹öÀü, Integrated Light-Out 4 mRCA Æß¿þ¾î 2.32 ÀÌÀü ¹öÀüÀÇ ´Ù·® Ãë¾àÁ¡À¸·Î ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ ¹Î°¨ÇÑ Á¤º¸¸¦ Å»Ãë, Á¶ÀÛÇϰųª DoS °ø°ÝÀ» ÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
2. CVE-2016-4379
HPE Integrated Lights-Out 3(iLO3) Æß¿þ¾î 1.88 ÀÌÀü ¹öÀüÀÇ TLS implementation¿¡ ÀÖ´Â Ãë¾àÁ¡À¸·Î MAC º¸È£ ¸ÞÄ¿´ÏÁòÀ» Á¦´ë·Î »ç¿ëÇÏÁö ¾Ê´Â´Ù. ÀÌ ¶§¹®¿¡ ¿ø°ÝÀÇ °ø°ÝÀÚ°¡ ¹Î°¨ÇÑ Á¤º¸¸¦ Å»ÃëÇÒ ¼ö ÀÖ°Ô µÈ´Ù.
3. CVE-2016-4380
HPE Operations Manager 9.21.130 ÀÌÀüÀÇ 9.21.x ¹öÀüÀÇ AdminUIÀÇ XSS Ãë¾àÁ¡À¸·Î ¿ø°Ý¿¡¼ ½ÂÀÎµÈ »ç¿ëÀÚ°¡ ÀÓÀÇÀÇ À¥ ½ºÅ©¸³Æ®³ª HTMLÀ» ÁÖÀÔÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
4. CVE-2016-4381
HPE XP7 Command View Advanced Edition(CVAE) Suite 8.4.1-02 ÀÌÀüÀÇ 6.x~8.x ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î Replication Manager¿Í Device Manager°¡ È°¼ºÈµÇ¸é ·ÎÄÃÀÇ »ç¿ëÀÚ°¡ Á¢±Ù ±ÝÁö ÀåÄ¡¸¦ ¿ìȸÇÒ ¼ö ÀÖ°Ô µÈ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>