Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mod_gzip基于栈的缓冲区溢出漏洞
Vulnerability Description
mod_gzip 1.3.26.1a及其早期版本和可能之后官方版本中的mod_gzip_printf存在基于栈的缓冲区溢出漏洞。当在调试模式下运行时,远程攻击者可以通过带有"Accept-Encoding: gzip"头的GET请求中的超长文件名执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A