Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple buffer overflows in the (a) Session Clustering Daemon and the (b) mod_cluster module in the Zend Platform 2.2.1 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a (1) empty or (2) crafted PHP session identifier (PHPSESSID).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zend Platform平台多个缓冲区溢出漏洞
Vulnerability Description
Zend Platform是企业级PHP应用的运行时平台环境。 Zend平台所捆绑的会话集群系统中存在多个缓冲区溢出漏洞,可能导致会话集群守护程序崩溃,会话函数无法工作,被攻击的节点拒绝服务。如果创建了特制的会话ID的话,攻击者还可以在会话集群守护程序的环境中或mod_cluster模块中执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A