Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in search.cgi in mnoGoSearch 3.1.19 and earlier allows remote attackers to execute arbitrary code via a long query (q) parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mnoGoSearch 3.1.19搜索查询远程缓冲区溢出漏洞
Vulnerability Description
mnoGoSearch 3.1.19是一款基于SQL的多功能的WEB搜索引擎,可使用在多种Linux和Unix操作系统下。 mnoGoSearch中的search.cgi对用户提交的数据缺少正确充分的边界检查,可导致远程攻击者以search.cgi进程的权限在目标系统中执行任意指令。 攻击者可以提供超长的查询字符串给search.cgi的q变量,可使search.cgi产生段错误,问题存在于不正确的堆内存分配管理中。精心构建字符串数据可导致攻击者以search.cgi进程的权限在目标系统中执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A