Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbitrary code via untrusted data to the unserialize function that may trigger "information disclosure, double-free and negative reference index array underflow" results.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP unserialize() 代码执行漏洞
Vulnerability Description
PHP是一种使用较为流行的Web脚本语言。 PHP4.3.10之前版本及5.x系列至5.0.2版本中串并转换代码存在缺陷,可导致拒绝服务或执行任意代码。 远程攻击者可通过提交不可信的数据给unserialize函数,利用此漏洞。
CVSS Information
N/A
Vulnerability Type
N/A