Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP 输入验证错误漏洞
Vulnerability Description
PHP是一种在服务器端执行的脚本语言。 PHP 5.3.4之前版本存在输入验证错误漏洞,该漏洞源于不能正确处理UTF-8编码的非最小表单以及UTF-8数据中的畸形子序列。远程攻击者更容易借助特制字符串执行跨站脚本攻击以及SQL注入。
CVSS Information
N/A
Vulnerability Type
N/A