Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Argument injection vulnerability in the ping function in Ping.php in the Net_Ping package before 2.4.5 for PEAR allows remote attackers to execute arbitrary shell commands via the host parameter. NOTE: this has also been reported as a shell metacharacter problem.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PEAR Net_Ping 'ping()'参数注入漏洞
Vulnerability Description
PEAR(全称PHP Extension and Application Repository)是PHP Group负责维护的一个PHP扩展及应用的代码仓库。 PEAR的Net_Ping包2.4.5之前版本中的Ping.php的ping函数中存在参数注入漏洞。远程攻击者可借助host参数执行任意shell命令。
CVSS Information
N/A
Vulnerability Type
N/A