Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The (1) sqlite_single_query and (2) sqlite_array_query functions in ext/sqlite/sqlite.c in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allow context-dependent attackers to execute arbitrary code by calling these functions with an empty SQL query, which triggers access of uninitialized memory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP sqlite_single_query和sqlite_array_query函数SQL注入漏洞
Vulnerability Description
PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。该语言主要用于Web开发,支持多种数据库及操作系统。 PHP的程序ext/sqlite/sqlite.c中(1) sqlite_single_query 和 (2) sqlite_array_query函数存在SQL注入漏洞,上下文攻击者可通过调用这些带空SQL查询的函数,执行任意代码,该漏洞可触发访问未初始化的内存。
CVSS Information
N/A
Vulnerability Type
N/A