Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
install.php in Drupal 5.x before 5.3, when the configured database server is not reachable, allows remote attackers to execute arbitrary code via vectors that cause settings.php to be modified.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal 代码注入漏洞
Vulnerability Description
Drupal是Drupal社区的一套使用PHP语言开发的开源内容管理系统。 Drupal 5.3版本之前的5.x版本中的install.php存在代码注入漏洞,当设置的数据服务器不能被获取,远程攻击者可以借助能使settings.php被修改的向量,执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A