Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a filename argument to convert, which may be called by other web applications.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ImageMagick文件名处理远程格式化字符串漏洞
Vulnerability Description
ImageMagick 6.0.2.5之前版本的image.c中的SetImageInfo函数存在格式化字符串漏洞,允许远程攻击者通过待转换filename参数中的格式化字符串限定符来引起拒绝服务(应用程序崩溃)攻击以及可能执行任意代码,且该参数可以被其他Web应用程序调用。
CVSS Information
N/A
Vulnerability Type
N/A