Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arbitrary files and possibly execute arbitrary programs via an HTTP request for php.exe with a filename in the query string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Win32 PHP.EXE远程文件泄露漏洞
Vulnerability Description
PHP在安装到带Apache和ScriptAlias的Windows上将/php/调到c:/php/时存在漏洞。远程攻击者借助带查询字符串文件名的php.exe的HTTP请求读取任意文件和可能执行任意程序。
CVSS Information
N/A
Vulnerability Type
N/A