๋ฌธ์˜ํ•˜๊ธฐ
๋ธ”๋กœ๊ทธ

SAP NetWeaver ์ทจ์•ฝ์  CVE-2025-31324: ์„œ๋ฒ„ ํ•˜์ด์žฌํ‚น ๋ฐ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰ ๊ฒฝ๊ณ 

์ตœ๊ทผ SAP NetWeaver ์ทจ์•ฝ์  CVE-2025-31324๊ฐ€ CVSS ๊ธฐ์ค€ ์ตœ๊ณ  ์ ์ˆ˜์ธ 10.0์œผ๋กœ ํ‰๊ฐ€๋˜์—ˆ๋‹ค. ์ด ์ทจ์•ฝ์ ์€ ๋ฌด์ œํ•œ ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์œผ๋กœ ์„œ๋ฒ„ ํ•˜์ด์žฌํ‚น๊ณผ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰์—

์ตœ๊ทผ SAP NetWeaver ์ทจ์•ฝ์  CVE-2025-31324๊ฐ€ CVSS ๊ธฐ์ค€ ์ตœ๊ณ  ์ ์ˆ˜์ธ 10.0์œผ๋กœ ํ‰๊ฐ€๋˜์—ˆ๋‹ค. ์ด ์ทจ์•ฝ์ ์€ย ๋ฌด์ œํ•œ ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์œผ๋กœย ์„œ๋ฒ„ ํ•˜์ด์žฌํ‚น๊ณผ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰์— ์•…์šฉ๋  ์ˆ˜ ์žˆ์œผ๋ฉฐ, ์ด๋ฏธ ์—ฌ๋Ÿฌ ์‚ฐ์—… ๋ถ„์•ผ์—์„œ ๋Œ€๊ทœ๋ชจ ์•…์šฉ์ด ๋ณด๊ณ ๋˜์—ˆ๋‹ค. ์ด๋ฒˆ ๊ธ€์—์„œ๋Š” CVE-2025-31324์˜ ๋ณด์•ˆ ์œ„ํ˜‘๊ณผ CTI ๊ธฐ๋ฐ˜ ์ทจ์•ฝ์  ๋Œ€์‘ ๋ฐฉ๋ฒ•์— ๋Œ€ํ•ด ์†Œ๊ฐœํ•œ๋‹ค.

SAP NetWeaver ์ทจ์•ฝ์ ย CVE-2025-31324

CVE-2025-31324๋Š”ย SAP NetWeaverย ์ทจ์•ฝ์ ์œผ๋กœ, ์ธ์ฆ๋˜์ง€ ์•Š์€ ๊ณต๊ฒฉ์ž๊ฐ€ ์™ธ๋ถ€์— ๋…ธ์ถœ๋œ ์ธ์Šคํ„ด์Šค์— ์ž„์˜์˜ ์‹คํ–‰ ํŒŒ์ผ์„ ์—…๋กœ๋“œํ•จ์œผ๋กœ์จ ์ฝ”๋“œ ์‹คํ–‰๊ณผ ์ „์ฒด ์‹œ์Šคํ…œ ์†์ƒ์„ ์œ ๋ฐœํ•  ์ˆ˜ ์žˆ๋Š” ์‹ฌ๊ฐํ•œ ์ทจ์•ฝ์ ์ด๋‹ค. ํŠนํžˆ, Visual Composer๊ฐ€ ํ™œ์„ฑํ™”๋˜์–ด ์žˆ๊ณ , ๋ณด์•ˆ ํŒจ์น˜๊ฐ€ ์ ์šฉ๋˜์ง€ ์•Š์€ VCFRAMEWORK 7.X ๋ฒ„์ „์—์„œ ์ทจ์•ฝํ•˜๋‹ค. ์ด ์ทจ์•ฝ์ ์ด ์•…์šฉ๋  ๊ฒฝ์šฐ, ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰(RCE) ๊ณต๊ฒฉ์œผ๋กœ ๋ฐœ์ „๋˜์–ด ์„œ๋ฒ„์— ์•…์„ฑ์ฝ”๋“œ๊ฐ€ ์ฃผ์ž…๋  ๊ฐ€๋Šฅ์„ฑ์ด ์žˆ๊ณ , ํ˜ธ์ŠคํŠธ ์‹œ์Šคํ…œ ์ „์ฒด์— ์œ„ํ˜‘์ด ๋  ์ˆ˜ ์žˆ๊ธฐ ๋•Œ๋ฌธ์— CVSS 10.0 ์˜ ๊ณ ์œ„ํ—˜ ํ‰๊ฐ€๋ฅผ ๋ฐ›์•˜๋‹ค.

๊ณต๊ฒฉ์ž๋Š” ํŠน์ˆ˜ํ•˜๊ฒŒ ์กฐ์ž‘๋œ POST ์š”์ฒญ์„ ํ†ตํ•ด JSP ์›น์…ธ๊ณผ ๊ฐ™์€ ์•…์„ฑ ํŒŒ์ผ์„ ์—…๋กœ๋“œํ•˜๊ณ , ์ด๋ฅผ ํ†ตํ•ด ์‹œ์Šคํ…œ ๋ช…๋ น์„ ์‹คํ–‰ํ•  ์ˆ˜ ์žˆ๋‹ค.ย ์ด๋ฏธ ๋‹ค์ˆ˜์˜ ๊ธ€๋กœ๋ฒŒ ๊ธฐ์—…์ด ํ•ด๋‹น ์ทจ์•ฝ์  ์•…์šฉ ํ”ผํ•ด๋ฅผ ๋ณด๊ณ ํ–ˆ๋‹ค๊ณ  ์•Œ๋ ค์ ธ ์žˆ์œผ๋ฉฐ,ย SAP NetWeaver์˜ ๊ฐœ๋ฐœ์‚ฌ SAP๋Š” ์ง€๋‚œ 13์ผ ํŒจ์น˜๋ฅผ ๋ฐœํ‘œํ–ˆ์ง€๋งŒ, ์—ฌ์ „ํžˆ CVE-2025-31324์— ์ทจ์•ฝํ•œ ์„œ๋ฒ„๊ฐ€ ์˜จ๋ผ์ธ์— ๋…ธ์ถœ๋˜์–ด ์žˆ์–ด ๊ธฐ์—…๋“ค์€ ์ž์‚ฌ์—์„œ ์šด์šฉ์ค‘์ธ SAP NetWeaver์˜ ๋ฒ„์ „๊ณผ ์ทจ์•ฝ ์ƒํƒœ๋ฅผ ํ™•์ธํ•˜๊ณ  ๋น ๋ฅธ ์กฐ์น˜๋ฅผ ์ทจํ•ด์•ผ ํ•œ๋‹ค.ย 

CTI๋ฅผ ํ™œ์šฉํ•œ ์ž ์žฌ ์•…์šฉ ๋Œ€์ƒ ํƒ์ƒ‰: ์™ธ๋ถ€ ๋…ธ์ถœ๋œ SAP NetWeaver

SAP NetWeaver ์ทจ์•ฝ์ ย CVE-2025-31324 ๋“ฑ์— ์ทจ์•ฝํ•œ SAP NetWeaver ์ œํ’ˆ ํƒ์ƒ‰์— Criminal IP์™€ ๊ฐ™์€ CTI ๋„๊ตฌ๋ฅผ ํ™œ์šฉํ•  ์ˆ˜ ์žˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด, ๋‹ค์Œ๊ณผ ๊ฐ™์€ ์ฟผ๋ฆฌ๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด ์™ธ๋ถ€์— ๋…ธ์ถœ๋œ SAP NetWeaver Application Server๋ฅผ ๊ฒ€์ƒ‰ํ•  ์ˆ˜ ์žˆ๋‹ค.

Criminal IP Search Query:ย product: sap netweaver application server

Criminal IP Asset Search์—์„œ product: sap netweaver application server ๋ฅผ ๊ฒ€์ƒ‰ํ•œ ๊ฒฐ๊ณผ
Criminal IP Asset Search์—์„œ product: sap netweaver application server ๋ฅผ ๊ฒ€์ƒ‰ํ•œ ๊ฒฐ๊ณผ

Criminal IP์— ์™ธ๋ถ€ ๋…ธ์ถœ๋œ ย SAP NetWeaver ์„œ๋ฒ„๋ฅผ ๊ฒ€์ƒ‰ํ•œ ๊ฒฐ๊ณผ 2,955๊ฐœ์˜ ์„œ๋ฒ„๊ฐ€ ๋…ธ์ถœ๋˜์–ด ์žˆ์—ˆ๋‹ค. ๊ฒฐ๊ณผ ๊ฐ€์šด๋ฐ์—๋Š” ๊ฐ๊ฐ 200 ์ƒํƒœ์ฝ”๋“œ์™€ 401 ์ƒํƒœ์ฝ”๋“œ๋ฅผ ๋ฐ˜ํ™˜ํ•œ ๊ฒฐ๊ณผ๋“ค์„ ํ™•์ธํ•  ์ˆ˜ ์žˆ์—ˆ๋‹ค. SAP NetWeaver๋Š” ์ฃผ๋กœ ๊ธฐ์—…์˜ ํ•ต์‹ฌ ์‹œ์Šคํ…œ(HR, ์žฌ๋ฌด, ๊ณต๊ธ‰๋ง ๋“ฑ)์— ์šด์šฉ๋˜๋Š” ํ”Œ๋žซํผ์œผ๋กœ ๋ณด์•ˆ์ด ์ •์ƒ์ ์œผ๋กœ ์„ค์ •๋˜์–ด ์žˆ์„ ๊ฒฝ์šฐ์—๋Š” ๋ฏผ๊ฐํ•˜๊ฑฐ๋‚˜ ๋‚ด๋ถ€ ์ „์šฉ ๊ธฐ๋Šฅ(URL)์€ ๋‹ค์Œ๊ณผ ๊ฐ™์€ ์‘๋‹ต์„ ๋ฐ˜ํ™˜ํ•ด์•ผ ํ•œ๋‹ค.

  • 401 Unauthorized: ์ธ์ฆ์ด ํ•„์š”ํ•จ
  • 403 Forbidden: ์ ‘๊ทผ ๊ถŒํ•œ ์—†์Œ
  • 404 Not Found: ๊ฒฝ๋กœ ์ˆจ๊น€

๊ทธ๋Ÿฌ๋‚˜ 200 ์ƒํƒœ์ฝ”๋“œ๋ฅผ ๋ฐ˜ํ™˜ํ–ˆ๋‹ค๋Š” ๊ฒƒ์€ ํ•ด๋‹น ์—”๋“œํฌ์ธํŠธ๊ฐ€ ์ธ์ฆ ์—†์ด ๋ˆ„๊ตฌ์—๊ฒŒ๋‚˜ ์—ด๋ ค ์žˆ๊ณ , ์—…๋กœ๋“œ ๋“ฑ์„ ๋ฐ›์•„๋“ค์ผ ์ˆ˜ ์žˆ๋‹ค๋Š” ๊ฒƒ์„ ์˜๋ฏธํ•œ๋‹ค. ํŠนํžˆ ๊ฒฐ๊ณผ ๊ฐ€์šด๋ฐ SAP NetWeaver ๊ธฐ๋ณธ ํฌํŠธ ์ค‘ ํ•˜๋‚˜์ธ 50000 ํฌํŠธ๊ฐ€ ์˜คํ”ˆ๋œ ๊ฒฐ๊ณผ๋ฅผ ํ™•์ธํ•ด๋ณด๋‹ˆ CVE-2025-31324์— ์ทจ์•ฝํ•œ 7.53 ๋ฒ„์ „์„ ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์—ˆ๋‹ค.ย ๋งŒ์•ฝ ์ด ์ƒํƒœ์—์„œ SAP Visual Composer ๊นŒ์ง€ ํ™œ์„ฑํ™”๋˜์–ด ์žˆ๋‹ค๋ฉด ์ด ์„œ๋ฒ„๋Š” ๋ช…๋ฐฑํžˆ CVE-2025-31324์— ์•…์šฉ๋  ์ˆ˜ ์žˆ๋‹ค.

200 ์ƒํƒœ์ฝ”๋“œ๋ฅผ ๋ฐ˜ํ™˜ํ•œ SAP NetWeaver ์„œ๋ฒ„์˜ ์˜คํ”ˆํฌํŠธ ํƒ์ง€ ๊ฒฐ๊ณผ
200 ์ƒํƒœ์ฝ”๋“œ๋ฅผ ๋ฐ˜ํ™˜ํ•œ SAP NetWeaver ์„œ๋ฒ„์˜ ์˜คํ”ˆํฌํŠธ ํƒ์ง€ ๊ฒฐ๊ณผ

ํ•ด๋‹น ์„œ๋ฒ„๋Š” 2017๋…„๋ถ€ํ„ฐ ์กด์žฌํ–ˆ๋˜ ์ทจ์•ฝ์ ์ด ์—ฌ์ „ํžˆ ํŒจ์น˜๋˜์ง€ ์•Š์€ ์ƒํƒœ๋กœ ํƒ์ง€๋˜์—ˆ์œผ๋ฉฐ, ์ตœ๊ทผ ํ™œ๋ฐœํžˆ ์•…์šฉ๋˜๋Š” ์ทจ์•ฝ์ ์˜ ์ž ์žฌ ํƒ€๊ฒŸ์œผ๋กœ๋„ ๋ณผ ์ˆ˜ ์žˆ์–ด, ์ฆ‰์‹œ ๋ณด์•ˆ ์กฐ์น˜๊ฐ€ ํ•„์š”ํ•ด ๋ณด์ธ๋‹ค. ์ด๋ ‡๊ฒŒ ๋ฐฉ์น˜๋œ ์„œ๋ฒ„๊ฐ€ ์™ธ๋ถ€์— ๋…ธ์ถœ๋˜์–ด ์žˆ์Œ์€ ์ธ์ฆ ์šฐํšŒ, ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰, ์ •๋ณด ์œ ์ถœ, ๊ถŒํ•œ ์ƒ์Šน ๊ณต๊ฒฉ์˜ ์œ„ํ˜‘์ด ๋†’์•„์ง„๋‹ค๋Š” ๊ฒƒ์„ ์‹œ์‚ฌํ•œ๋‹ค.

CVE-2025-31324 ์•…์šฉ ์˜ˆ๋ฐฉ

SAP NetWeaver ์ทจ์•ฝ์ ย CVE-2025-31324๋Š” ์ธ์ฆ ์šฐํšŒ๋กœ ์•…์„ฑ JSP ํŒŒ์ผ์„ ์—…๋กœ๋“œํ•˜๊ณ  ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰(RCE)์„ ๊ฐ€๋Šฅํ•˜๊ฒŒ ํ•˜๋Š” ์น˜๋ช…์ ์ธ ์ทจ์•ฝ์ ์ด๋‹ค. ์ทจ์•ฝ์  ์•…์šฉ ํ”ผํ•ด๋ฅผ ์˜ˆ๋ฐฉํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ๊ธฐ์ˆ ์  ํŒจ์น˜๋ฟ ์•„๋‹ˆ๋ผ ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค(CTI)์™€ ๊ณต๊ฒฉ ํ‘œ๋ฉด ๊ด€๋ฆฌ(ASM)๋ฅผ ํ•จ๊ป˜ ํ™œ์šฉํ•œ ๋‹ค์ธต์ ์ธ ๋ณด์•ˆ ๋Œ€์‘ ์ „๋žต์ด ์š”๊ตฌ๋œ๋‹ค.

  • SAP ๊ณต์‹ ๋ณด์•ˆ ํŒจ์น˜ ์ ์šฉ ๋ฐ ๋ถˆํ•„์š”ํ•œ ๊ฒฝ์šฐ, Visual Composer ๋น„ํ™œ์„ฑํ™”
  • SAP Web Dispatcher ๋˜๋Š” WAF ๊ตฌ์„ฑ์„ ํ†ตํ•ด ์ธ์ฆ ์—†๋Š” POST ์š”์ฒญ ์ฐจ๋‹จ ์„ค์ •
  • ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค ํˆด์„ ํ™œ์šฉํ•œ ์ทจ์•ฝ ์ƒํƒœ ํƒ์ง€ ๋ฐ ๋Œ€์‘
  • ๊ณต๊ฒฉ ํ‘œ๋ฉด ๊ด€๋ฆฌ ์†”๋ฃจ์…˜์„ ํ™œ์šฉํ•œ ์„œ๋ฒ„์˜ ์™ธ๋ถ€ ๋…ธ์ถœ ์—ฌ๋ถ€ ๋ชจ๋‹ˆํ„ฐ๋ง

FAQ

Q1.ย SAP NetWeaver ์ทจ์•ฝ์ ย CVE-2025-31324๊ฐ€ ์•…์šฉ๋˜๋ฉด ์–ด๋–ค ์˜ํ–ฅ์„ ๋ผ์น˜๋‚˜์š”?

CVE-2025-31324๊ฐ€ ์•…์šฉ๋  ๊ฒฝ์šฐ, ๊ณต๊ฒฉ์ž๋Š” ์ธ์ฆ ์—†์ด SAP NetWeaver Application ์„œ๋ฒ„์— ์•…์„ฑ JSP ํŒŒ์ผ์„ ์—…๋กœ๋“œํ•˜๊ณ  ์ด๋ฅผ ์‹คํ–‰ํ•จ์œผ๋กœ์จ ์›๊ฒฉ์—์„œ ์„œ๋ฒ„ ์ œ์–ด๊ถŒ์„ ํš๋“ํ•  ์ˆ˜ ์žˆ๋‹ค. ์ด๋กœ ์ธํ•ด ๋‹ค์Œ๊ณผ ๊ฐ™์€ ๋ณด์•ˆ ํ”ผํ•ด๊ฐ€ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ๋‹ค.

  1. ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰: ๊ณต๊ฒฉ์ž๊ฐ€ ์„œ๋ฒ„์—์„œ ์‹œ์Šคํ…œ ๋ช…๋ น์„ ์‹คํ–‰ํ•  ์ˆ˜ ์žˆ์–ด, ์•…์„ฑ์ฝ”๋“œ ์‹คํ–‰๊ณผ ์„œ๋ฒ„ ์žฅ์•… ๊ฐ€๋Šฅ
  2. ๋ฐฑ๋„์–ด ๋ฐ ์›น์…ธ ์„ค์น˜: ์—…๋กœ๋“œ๋œ JSP ํŒŒ์ผ์ด ์›น์…ธ ์—ญํ• ์„ ํ•˜๋ฉฐ ์ง€์†์  ์ ‘๊ทผ ๊ฒฝ๋กœ๋ฅผ ์ œ๊ณตํ•˜๊ณ  ๊ณต๊ฒฉ์ž๋Š” ์ถ”ํ›„์—๋„ ์‹œ์Šคํ…œ์— ์žฌ์ง„์ž… ๊ฐ€๋Šฅ
  3. ๋ฐ์ดํ„ฐ ์œ ์ถœ ๋ฐ ์‹œ์Šคํ…œ ์ •๋ณด ํƒˆ์ทจ: SAP ๋‚ด๋ถ€ ๋ฐ์ดํ„ฐ (๊ณ ๊ฐ ์ •๋ณด, ERP ๋ฐ์ดํ„ฐ, ์ธ์‚ฌ/์žฌ๋ฌด ์ •๋ณด) ํƒˆ์ทจ ๊ฐ€๋Šฅ
  4. ๋‚ด๋ถ€๋ง ์นจํˆฌ ๋ฐ ํ™•์‚ฐ:ย SAP ์„œ๋ฒ„๋ฅผ ๊ฑฐ์ ์œผ๋กœ ์‚ผ์•„ ๋‚ด๋ถ€ ๋„คํŠธ์›Œํฌ๋กœ ์นจํˆฌ (์ธก๋ฉด ์ด๋™)
  5. ์„œ๋น„์Šค ์ค‘๋‹จ ๋ฐ ์šด์˜ ํ”ผํ•ด: ์„œ๋ฒ„ ์ž์› ๊ณผ๋‹ค ์‚ฌ์šฉ ๋˜๋Š” ์‹œ์Šคํ…œ ํŒŒ์ผ ๋ณ€๊ฒฝ์œผ๋กœ ์ธํ•œ ์„œ๋น„์Šค ์ค‘๋‹จ ๊ฐ€๋Šฅ
  6. ๊ทœ์ œ ์œ„๋ฐ˜ ๋ฐ ์‹ ๋ขฐ๋„ ์†์ƒ: ๊ฐœ์ธ์ •๋ณด ์œ ์ถœ ์‹œ GDPR, CCPA ๋“ฑ ๋ฒ•์  ์ œ์žฌ์™€ ๊ณ ๊ฐ์‚ฌ, ํŒŒํŠธ๋„ˆ, ๊ฐ์‚ฌ๊ธฐ๊ด€์œผ๋กœ๋ถ€ํ„ฐ์˜ ์‹ ๋ขฐ ํ•˜๋ฝ

Q2.ย SAP NetWeaver ์ทจ์•ฝ์ ย CVE-2025-31324 ์•…์šฉ์„ ์˜ˆ๋ฐฉํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ๋ฌด์—‡์ธ๊ฐ€์š”?

CVE-2025-31324๋Š” ์„œ๋ฒ„ ํ•˜์ด์žฌํ‚น๊ณผ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰ ๊ณต๊ฒฉ์œผ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋Š” ์น˜๋ช…์ ์ธ ์ทจ์•ฝ์ ์œผ๋กœ, ์ด๋ฅผ ์˜ˆ๋ฐฉํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ์ตœ์‹  ๋ณด์•ˆ ํŒจ์น˜๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค(CTI)์™€ ๊ณต๊ฒฉ ํ‘œ๋ฉด ๊ด€๋ฆฌ(ASM)๋ฅผ ๋ณ‘ํ–‰ํ•œ ๋ณตํ•ฉ์ ์ธ ๋ณด์•ˆ ์ฒด๊ณ„ ๋„์ž…์ด ์ค‘์š”ํ•˜๋‹ค. SAP์—์„œ๋Š” ๊ณต์‹ ๋ณด์•ˆ ํŒจ์น˜๋ฅผ ์‹ ์†ํžˆ ์ ์šฉํ•˜๊ณ , Visual Composer ์ปดํฌ๋„ŒํŠธ๊ฐ€ ๋ถˆํ•„์š”ํ•  ๊ฒฝ์šฐ ์ด๋ฅผ ๋น„ํ™œ์„ฑํ™”ํ•ด์•ผ ํ•˜๋ฉฐ, ์ธ์ฆ ์—†๋Š” POST ์š”์ฒญ์„ ์ฐจ๋‹จํ•˜๋Š” ์„ค์ •์ด ์š”๊ตฌ๋œ๋‹ค. ๋˜ํ•œ, ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค ๋„๊ตฌ๋ฅผ ํ™œ์šฉํ•ด ์ทจ์•ฝ ์ƒํƒœ๋ฅผ ์กฐ๊ธฐ์— ํƒ์ง€ํ•˜๊ณ  ๋Œ€์‘ํ•˜๋ฉฐ, ASM ์†”๋ฃจ์…˜์„ ํ†ตํ•ด ์„œ๋ฒ„๊ฐ€ ์™ธ๋ถ€์— ๋…ธ์ถœ๋˜์–ด ์žˆ๋Š”์ง€๋ฅผ ์ง€์†์ ์œผ๋กœ ๋ชจ๋‹ˆํ„ฐ๋งํ•จ์œผ๋กœ์จ ๋ณด์•ˆ ์‚ฌ๊ณ ๋ฅผ ์‚ฌ์ „์— ๋ฐฉ์ง€ํ•  ์ˆ˜ ์žˆ๋‹ค.

๊ฒฐ๋ก 

SAP NetWeaver๋Š” ๊ธฐ์—…์˜ ํ•ต์‹ฌ ์—…๋ฌด๋ฅผ ๋‹ด๋‹นํ•˜๋Š” ์ธํ”„๋ผ๋กœ, ๊ทธ ๋ณด์•ˆ ์ทจ์•ฝ์ ์€ ๋‹จ์ˆœํ•œ ์‹œ์Šคํ…œ ๊ฒฐํ•จ์„ ๋„˜์–ด ๊ธฐ์—… ์ „์ฒด์˜ ๊ฒฝ์˜ ๋ฆฌ์Šคํฌ๋กœ ์ด์–ด์งˆ ์ˆ˜ ์žˆ๋‹ค. CVE-2025-31324๋Š” ์ธ์ฆ ์šฐํšŒ๋ฅผ ํ†ตํ•œ ํŒŒ์ผ ์—…๋กœ๋“œ์™€ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰์ด ๊ฐ€๋Šฅํ•œ ์น˜๋ช…์ ์ธ ์ทจ์•ฝ์ ์œผ๋กœ, ์ด๋ฏธ ํ˜„์‹ค์—์„œ ์•…์šฉ๋œ ์‚ฌ๋ก€๊ฐ€ ๋ณด๊ณ ๋˜๊ณ  ์žˆ๋‹ค. ๋‹จ์ˆœํžˆ ํŒจ์น˜๋ฅผ ์ ์šฉํ•˜๋Š” ๊ฒƒ์— ๊ทธ์น˜์ง€ ์•Š๊ณ , CTI์™€ ASM์„ ์ ๊ทน์ ์œผ๋กœ ํ™œ์šฉํ•ด ์™ธ๋ถ€ ๋…ธ์ถœ ์—ฌ๋ถ€๋ฅผ ์ƒ์‹œ ์ ๊ฒ€ํ•˜๊ณ  ๊ณต๊ฒฉ ์ง•ํ›„๋ฅผ ์„ ์ œ์ ์œผ๋กœ ํƒ์ง€ํ•˜๋Š” ๋‹ค๊ณ„์ธต ๋ฐฉ์–ด ์ „๋žต์ด ํ•„์ˆ˜์ ์ด๋‹ค.ย 

๊ด€๋ จํ•˜์—ฌย CVE-2025-32433: Erlang/OTP SSH ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰ ์ทจ์•ฝ์  ๊ฒฝ๊ณ ย ๊ธ€์„ ์ฐธ๊ณ ํ•  ์ˆ˜ ์žˆ๋‹ค.


๋ฐ์ดํ„ฐ ์ถœ์ฒ˜: Criminal IP (https://www.criminalip.io/ko), NIST (https://nvd.nist.gov/vuln/detail/CVE-2025-31324), Bleeping Computer (https://www.bleepingcomputer.com/news/security/over-1-200-sap-netweaver-servers-vulnerable-to-actively-exploited-flaw/), SC Media (https://www.scworld.com/news/sap-netweaver-bug-exploited-since-january-allows-rce)

๊ด€๋ จ ๊ธ€ :

https://www.criminalip.io/ko/knowledge-hub/blog/27639

SAP NetWeaverย ์ทจ์•ฝ์ ย CVE-2025-31324: ์„œ๋ฒ„ ํ•˜์ด์žฌํ‚น ๋ฐ ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰ ๊ฒฝ๊ณ  | CIP Blog | Criminal IP