Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and earlier, when register_globals is enabled, allows remote attackers to overwrite arbitrary variables related to the db config file. NOTE: this can be leveraged for code injection by overwriting the language file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Turnkey PHPLiveHelper libsecure.php 变量重写漏洞
Vulnerability Description
Turnkey PHP Live Helper是一套PHP编写的在线客户系统。 PHP Live Helper 2.0.1及其之前版本的版本中libsecure.php中存在变量覆盖漏洞。当register_globals开启时,远程攻击者可以利用此漏洞重写环境变量,可能设计数据库配置、代码注入等安全问题。
CVSS Information
N/A
Vulnerability Type
N/A