PHP是广泛使用的通用目的脚本语言,特别适合于Web开发,可嵌入到HTML中。 PHP 5.3至5.3.2版本中的Mysqlnd扩展中的php_mysqlnd_auth_write函数存在基于栈的缓冲区溢出漏洞。攻击者可以借助(a)mysql_connect或(b)mysqli_connect函数中的超长(1)用户名参数或(2)数据库名称参数导致拒绝服务(崩溃),并且可能执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-3062 | PHP Mysqlnd扩展'mysqlnd_wireprotocol.c'信息泄露漏洞 | |
| CVE-2010-3104 | DeskShare AutoFTP Manager路径遍历漏洞 | |
| CVE-2010-3103 | FTPGetter Team FTPGetter路径遍历漏洞 | |
| CVE-2010-3102 | 3D-FTP Client路径遍历漏洞 | |
| CVE-2010-3101 | FTPx Corp FTP Explorer路径遍历漏洞 | |
| CVE-2010-2710 | HP OpenView Network Node Manager未明漏洞 | |
| CVE-2010-2531 | PHP var_export函数信息泄露漏洞 | |
| CVE-2010-2484 | PHP strrchr函数信息泄露漏洞 | |
| CVE-2010-3100 | Porta+ FTP Client路径遍历漏洞 | |
| CVE-2010-3099 | SmartFTP Client路径遍历漏洞 | |
| CVE-2010-3098 | Ftprush IoRush Software FTP Rush路径遍历漏洞 | |
| CVE-2010-3097 | WinFrigate Frigate 3 FTP client路径遍历漏洞 | |
| CVE-2010-3096 | SoftX FTP Client路径遍历漏洞 | |
| CVE-2010-3065 | PHP默认会话串行器权限许可和访问控制漏洞 | |
| CVE-2010-3063 | PHP Mysqlnd扩展php_mysqlnd_read_error_from_line函数缓冲区溢出漏洞 | |
| CVE-2008-7258 | Anibal Monsalve Salazar sSMTP 输入验证漏洞 | |
| CVE-2010-3014 | NetBSD和FreeBSD Coda文件系统内核模块信息泄露漏洞 | |
| CVE-2010-2944 | zope-ldapuserfolder 'LDAPUserFolder/LDAPUserFolder.py'认证函数授权问题漏洞 | |
| CVE-2010-1795 | Apple iTunes未明漏洞 | |
| CVE-2010-1768 | Apple iTunes未明漏洞 |
Showing top 20 of 30 CVEs. View all on vendor page → →
No comments yet