Eyeon Security Information security company

보안 동향

㈜아이온시큐리티에서 서비스 이용 고객님들의 안정적인 시스템 운영을 위해
필수적인 주요 보안 조치 사항을 안내해드립니다.

최신 보안 동향(26년 09월 11일) 관리자 2026-09-11 00:19:51
최신 보안 동향(26년 09월 11일)
관리자  2026-09-11 00:19:51
보안 동향 브리핑
 
SECURITY
DAILY REPORT
Eyeon Security

생성일시: 2026-09-11 00:10

보안동향 (신규 5건)
높음 5 합계 5
높음 GHSA
CVE-2026-59185 · Identrail Cross-tenant IDOR: Client-supplied GitHub App installation_id is bound to the ca…
CVE ID CVE-2026-59185
심각도 높음
영향제품 go/github.com/identrail/identrail
CVSS 8.5
출처 GHSA
수집일 2026-09-10
높음 GHSA
CVE-2026-59179 · @openhop/server: Path Traversal in Flow ID File Operations
CVE ID CVE-2026-59179
심각도 높음
영향제품 npm/@openhop/server
CVSS 8.3
출처 GHSA
수집일 2026-09-10
높음 GHSA
CVE-2026-59177 · ESPHome Device Builder Dashboard: Unauthenticated dashboard access via the HA add-on ingre…
CVE ID CVE-2026-59177
심각도 높음
영향제품 pip/esphome-device-builder
CVSS 8.8
출처 GHSA
수집일 2026-09-10
높음 GHSA
CVE-2026-59176 · functype-mcp-server: MCP `set_functype_version` Package Alias RCE via Unsanitized pnpm ins…
CVE ID CVE-2026-59176
심각도 높음
영향제품 npm/functype-mcp-server
CVSS 7.8
출처 GHSA
수집일 2026-09-10
높음 GHSA
CVE-2026-59172 · Joker linter executed project-local .jokerd/linter.* files during linting
CVE ID CVE-2026-59172
심각도 높음
영향제품 go/github.com/candid82/joker
CVSS 7.8
출처 GHSA
수집일 2026-09-10
KISA 보안공지 (신규 4건)
높음 1중간 3 합계 4
중간 KISA
Cisco 제품 보안 업데이트 권고
심각도 중간
출처 KISA
수집일 2026-09-10
출처: KISA (한국인터넷진흥원)

□ 개요
o Cisco社는 자사 제품에서 발생하는 취약점을 해결한 보안 업데이트 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 설명
o Cisco Nexus 9000 Series Switches에서 발생하는 Binding to an Unrestricted IP Address 취약점(CVE-2026-20212) [1][2]

□ 영향을 받는 제품 및 해결 방안

취약점 제품명 영향받는 버전 해결 버전
CVE-2026-20212 Nexus 9000 Series Switches 'Cisco Software Checker'를 사용하여 확인 'Cisco Software Checker'를 사용하여 확인

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]

□ 참고사이트
[1] https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-n9k-s1-rce-EH8dEtr
[2] https://nvd.nist.gov/vuln/detail/CVE-2026-20212

□ 문의사항
o 한국인터넷진흥원 사이버민원센터 : 국번없이 118

□ 작성 : 디지털위협대응본부 취약점관리센터

중간 KISA
Linux 제품 보안 업데이트 권고
심각도 중간
출처 KISA
수집일 2026-09-10
출처: KISA (한국인터넷진흥원)

□ 개요
o Linux 재단은 자사 제품에서 발생하는 취약점을 해결한 보안 업데이트 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 설명
o Linux 커널에서 발생하는 Use After Free 취약점(CVE-2026-31554) [1][2]

□ 영향을 받는 제품 및 해결 방안

취약점 제품명 영향받는 버전 해결 버전
CVE-2026-31554 Linux Kernel 6.12.80 미만 6.12.80 이상
CVE-2026-31554 Linux Kernel 6.18.21 미만 6.18.21 이상
CVE-2026-31554 Linux Kernel 6.19.11 미만 6.19.11 이상
CVE-2026-31554 Linux Kernel 7.0 미만 7.0 이상

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]

□ 참고사이트
[1] https://git.kernel.org/pub/scm/linux/security/vulns.git/tree/cve/published/2026/CVE-2026-31554.dyad
[2] https://nvd.nist.gov/vuln/detail/CVE-2026-31554

□ 문의사항
o 한국인터넷진흥원 사이버민원센터 : 국번없이 118

□ 작성 : 디지털위협대응본부 취약점관리센터

중간 KISA
PostgreSQL 제품 보안 업데이트 권고
심각도 중간
출처 KISA
수집일 2026-09-10
출처: KISA (한국인터넷진흥원)

□ 개요
o PostgreSQL 재단은 자사 제품에서 발생하는 취약점을 해결한 보안 업데이트 발표 [1]~[6]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 설명
o PostgreSQL에서 발생하는 Integer Overflow or Wraparound 취약점(CVE-2026-6473) [1][7]
o PostgreSQL에서 발생하는 UNIX Symbolic Link (Symlink) Following 취약점(CVE-2026-6475) [2][8]
o PostgreSQL에서 발생하는 Use of Inherently Dangerous Function 취약점(CVE-2026-6477) [3][9]
o PostgreSQL에서 발생하는 Uncontrolled Recursion 취약점(CVE-2026-6479) [4][10]
o PostgreSQL에서 발생하는 Stack-based Buffer Overflow 취약점(CVE-2026-6637) [5][11]
o PostgreSQL에서 발생하는 SQL Injection 취약점(CVE-2026-6476) [6][12]

□ 영향을 받는 제품 및 해결 방안

취약점 제품명 영향받는 버전 해결 버전
CVE-2026-6473 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6473 PostgreSQL 17.10 미만 17.10 이상
CVE-2026-6473 PostgreSQL 16.14 미만 16.14 이상
CVE-2026-6473 PostgreSQL 15.18 미만 15.18 이상
CVE-2026-6473 PostgreSQL 14.23 미만 14.23 이상
CVE-2026-6475 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6475 PostgreSQL 17.10 미만 17.10 이상
CVE-2026-6475 PostgreSQL 16.14 미만 16.14 이상
CVE-2026-6475 PostgreSQL 15.18 미만 15.18 이상
CVE-2026-6475 PostgreSQL 14.23 미만 14.23 이상
CVE-2026-6477 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6477 PostgreSQL 17.10 미만 17.10 이상
CVE-2026-6477 PostgreSQL 16.14 미만 16.14 이상
CVE-2026-6477 PostgreSQL 15.18 미만 15.18 이상
CVE-2026-6477 PostgreSQL 14.23 미만 14.23 이상
CVE-2026-6479 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6479 PostgreSQL 17.10 미만 17.10 이상
CVE-2026-6479 PostgreSQL 16.14 미만 16.14 이상
CVE-2026-6479 PostgreSQL 15.18 미만 15.18 이상
CVE-2026-6479 PostgreSQL 14.23 미만 14.23 이상
CVE-2026-6637 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6637 PostgreSQL 17.10 미만 17.10 이상
CVE-2026-6637 PostgreSQL 16.14 미만 16.14 이상
CVE-2026-6637 PostgreSQL 15.18 미만 15.18 이상
CVE-2026-6637 PostgreSQL 14.23 미만 14.23 이상
CVE-2026-6476 PostgreSQL 18.4 미만 18.4 이상
CVE-2026-6476 PostgreSQL 17.10 미만 17.10 이상

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]~[6]

□ 참고사이트
[1] https://www.postgresql.org/support/security/CVE-2026-6473/
[2] https://www.postgresql.org/support/security/CVE-2026-6475/
[3] https://www.postgresql.org/support/security/CVE-2026-6477/
[4] https://www.postgresql.org/support/security/CVE-2026-6479/
[5] https://www.postgresql.org/support/security/CVE-2026-6637/
[6] https://www.postgresql.org/support/security/CVE-2026-6476/
[7] https://nvd.nist.gov/vuln/detail/CVE-2026-6473
[8] https://nvd.nist.gov/vuln/detail/CVE-2026-6475
[9] https://nvd.nist.gov/vuln/detail/CVE-2026-6477
[10] https://nvd.nist.gov/vuln/detail/CVE-2026-6479
[11] https://nvd.nist.gov/vuln/detail/CVE-2026-6637
[12] https://nvd.nist.gov/vuln/detail/CVE-2026-6476

□ 문의사항
o 한국인터넷진흥원 사이버민원센터 : 국번없이 118

□ 작성 : 디지털위협대응본부 취약점관리센터

높음 KISA
美 CISA 발표 주요 Exploit 정보공유(Update. 2026-09-09)
심각도 높음
출처 KISA
수집일 2026-09-10
출처: KISA (한국인터넷진흥원)

□ 개요
o 美 CISA에서 현재 자주 악용되고 있는 취약점 목록 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 영향을 받는 제품

CVE제조사취약점내용조치사항
CVE-2026-20079CiscoCisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel VulnerabilityCisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management contain an authentication Bypass using an alternate path or channel vulnerability that could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2026-87491GoogleGoogle Chromium V8 Out of Bounds Write VulnerabilityGoogle Chromium V8 contains an out of bounds write vulnerability that allows a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2025-25249FortinetFortinet Multiple Products Heap-based Buffer Overflow VulnerabilityFortinet FortiOS, FortiSwitchManager, and FortiSASE contain a heap-based buffer overflow vulnerability that allows an attacker to execute unauthorized code or commands via specially crafted packets.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2026-19490CitrixCitrix NetScaler Authentication Bypass Using an Alternate Path or Channel VulnerabilityCitrix NetScaler ADC and NetScaler Gateway contain an authentication-bypass vulnerability involving an alternate path or channel. When the NetScaler appliance is configured as an AAA virtual server or as a Gateway (SSL VPN, ICA Proxy, CVPN, or RDP Proxy), an unauthenticated remote threat actor may be able to bypass authentication.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]

□ 참고사이트
[1] https://www.cisa.gov/known-exploited-vulnerabilities-catalog

□ 작성 : 디지털위협대응본부 취약점관리센터

보안동향 한국어 제목/요약/분석/권고 및 종합 브리핑은 수집된 사실을 바탕으로 AI가 생성한 자체 작성물입니다. KISA 보안공지 본문은 원문(한국인터넷진흥원)을 그대로 인용하며, 저작권은 각 원 출처에 있습니다. 상세 내용은 각 원문 링크에서 확인하십시오.
 

첨부 파일 :