Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHP remote file inclusion vulnerability in phphtml.php in Idan Sofer PHP::HTML 0.6.4 allows remote attackers to execute arbitrary PHP code via a URL in the htmlclass_path parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP::HTML htmlclass_path远程文件包含漏洞
Vulnerability Description
PHP::HTML是一套HTML类,用于帮助创建复杂的文档。 PHP::HTML处理用户请求时存在输入验证漏洞,远程攻击者可能利用此漏洞在服务器上执行任意命令。 PHP::HTML的phphtml.php脚本中没有正确地验证htmlclass_path参数的输入,允许攻击者通过包含任意本地或外部资源导致执行任意代码。漏洞代码如下: <? define (PHPHTML_VERSION, "0.6.4"); /* gettext is not implemented for now*/ $use_gette
CVSS Information
N/A
Vulnerability Type
N/A