SIGRED
SIGRedSIGRed[1](CVE-2020-1350)는 2003년부터 2019년까지 Microsoft의 Windows Server 버전 DNS(Domain Name System) 구현에서 발견된 보안 취약성입니다.
이 취약성을 이용하기 위해 인증되지 않은 공격자가 Windows DNS [2]서버에 악의적인 요청을 보냅니다.이 취약성을 이용하면 공격자가 로컬 시스템 계정의 컨텍스트에서 도메인 컨트롤러에서 임의 코드를 실행할 수 있습니다.
이 문제에 대한 Microsoft의 권고에서 이 취약성은 '웜 가능'으로 분류되었으며 CVSS 기본 점수가 10.[3]0으로 부여되었습니다.
모든 정부 기관에 24시간 내에 [4]패치 또는 완화 조치를 배포하도록 지시하는 국토안보부 긴급 지침의 대상이 되었습니다.
이 취약성은 Check Point Software Technologies에 의해 발견되었으며 2020년 [1]7월 14일에 공개되었습니다.
레퍼런스
- ^ a b "SIGRed - Resolving Your Way into Domain Admin: Exploiting a 17 Year-old Bug in Windows DNS Servers". Check Point Research. July 14, 2020.
- ^ https://cyber.dhs.gov/assets/report/ed-20-03.pdf[베어 URL PDF]
- ^ "July 2020 Security Update: CVE-2020-1350 Vulnerability in Windows Domain Name System (DNS) Server". Microsoft Security Response Center. Retrieved 2020-07-27.
{{cite web}}CS1 유지보수: url-status(링크) - ^ "cyber.dhs.gov - Emergency Directive 20-03". cyber.dhs.gov.