Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Joomla! before 1.0.11 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to have an unspecified impact. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in Joomla!.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Joomla! unset PHP指令bug 未明安全漏洞
Vulnerability Description
Joomla! 1.0.11之前的版本中,当输入数据包含的数值型参数的值与字母数字型参数的哈希值相匹配时,没有正确释放变量,导致远程攻击者造成不明影响。注:此漏洞是由unset PHP指令中的一个bug引起的,并且PHP中应该提供了适当的修复程序,但这一说法目前还存在争议;如果是这样,则不应将其视为Joomla中的漏洞。.
CVSS Information
N/A
Vulnerability Type
N/A