Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A regression error in the phpinfo function in PHP 4.4.3 to 4.4.6, and PHP 6.0 in CVS, allows remote attackers to conduct cross-site scripting (XSS) attacks via GET, POST, or COOKIE array values, which are not escaped in the phpinfo output, as originally fixed for CVE-2005-3388.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP/CVS phpinfo函数 回归错误
Vulnerability Description
PHP 4.4.3到4.4.6版本和CVS中的PHP 6.0版本的phpinfo函数中存在回归错误。远程攻击者可以借助GET,POST或COOKIE 数组值,执行跨站脚本攻击。它可能源于对CVE-2005-3388的修复。
CVSS Information
N/A
Vulnerability Type
N/A