Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used by Serendipity (S9Y) and other products, allows attackers to call arbitrary PHP functions via templates, related to a '\0' character in a search string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Smarty 'modifier.regex_replace.php插件' 权限许可和访问控制漏洞
Vulnerability Description
当Serendipity (S9Y)和其他产品使用时,Smarty的modifier.regex_replace.php插件存在权限许可和访问控制漏洞。远程攻击者借助模板访问任意的PHP函数。该templates与搜索字符串中的'\0'字符有关。
CVSS Information
N/A
Vulnerability Type
N/A