CVE-2018-13134, CVE-2018-13136
[º¸¾È´º½º ¹®°¡¿ë ±âÀÚ] ÇöÁö ½Ã°¢À¸·Î 7¿ù 3ÀÏ, ¿ì¸®³ª¶ó ½Ã°£À¸·Î´Â ´ë·« 3ÀÏ¿¡¼ 4ÀÏ·Î ³Ñ¾î¿À´Â ¹ã »çÀÌ¿¡ ¹Ì±¹ÀÇ National Vulnerability DatabaseÀ» ÅëÇØ ¹ßÇ¥µÈ Ãë¾àÁ¡µéÀÌ´Ù.
[À̹ÌÁö = iclickart]
1. CVE-2018-13131
SpadePreSaleÀ̶ó´Â ½º¸¶Æ® °è¾à¼ÀÇ mint ÇÔ¼öÀÇ Á¤¼ö ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î, °è¾à¼ ¼ÒÀ¯ÀÚ°¡ ÀÓÀÇ´ë·Î ÅäÅ«À» ÃëµæÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
2. CVE-2018-13132
Spadeico¶ó´Â ½º¸¶Æ® °è¾à¼ÀÇ mint ÇÔ¼öÀÇ Á¤¼ö ¿À¹öÇ÷οì Ãë¾àÁ¡À¸·Î, °è¾à¼ ¼ÒÀ¯ÀÚ°¡ ÀÓÀÇ´ë·Î ÅäÅ«À» ÃëµæÇÒ ¼ö ÀÖ°Ô ÇØÁØ´Ù.
3. CVE-2018-13133
Golden Frog VyprVPN 2018-06-21 ÀÌÀü ¹öÀüÀÇ Ãë¾àÁ¡À¸·Î À©µµ¿ì¿¡¼ÀÇ ¼³Ä¡ °úÁ¤°ú °ü·ÃÀÌ ÀÖ´Ù.
4. CVE-2018-13134
TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU ÀåºñµéÀÇ /webpages/data URIÀÇ PATH_INFOÀÇ XSS Ãë¾àÁ¡ÀÌ´Ù.
5. CVE-2018-13136
Ultimate Member Ç÷¯±×ÀÎ 2.0.18 ÀÌÀü ¹öÀüÀÇ wp-admin ¼¼Æà ȸéÀÇ XSS Ãë¾àÁ¡ÀÌ´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(www.boannews.com) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>