Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The iconv_substr function in PHP 5.2.4 and earlier allows context-dependent attackers to cause (1) a denial of service (application crash) via a long string in the charset parameter, probably also requiring a long string in the str parameter; or (2) a denial of service (temporary application hang) via a long string in the str parameter. NOTE: this might not be a vulnerability in most web server environments that support multiple threads, unless these issues can be demonstrated for code execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP htmlentities和htmlspecialchars函数拒绝服务漏洞
Vulnerability Description
PHP是广泛使用的通用的脚本语言,特别适合于Web开发,可嵌入到HTML中。 PHP的5.2.5之前版本中存在多个安全漏洞,具体包括:htmlentities和htmlspecialchars函数中不会接受部分多字节序列从而导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A