Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The php_binary serialization handler in the session extension in PHP before 4.4.5, and 5.x before 5.2.1, allows context-dependent attackers to obtain sensitive information (memory contents) via a serialized variable entry with a large length value, which triggers a buffer over-read.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP session extension php_binary serialization处理程序 信息泄露漏洞
Vulnerability Description
PHP session extension 4.4.5之前版本和5.2.1之前的5.x版本中的php_binary serialization处理程序允许见机行事的攻击者借助包含大的长度值的连续的变量入口,获得敏感信息(内存内容)。这会触发缓冲区重读。
CVSS Information
N/A
Vulnerability Type
N/A