PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。该语言主要用于Web开发,支持多种数据库及操作系统。 PHP 5.2.15之前版本,以及5.3.4之前的5.3.x版本中的Zend引擎中存在释放后使用漏洞。上下文攻击者可以借助与__set,__get,__isset和__unset方法(位于由某个引用所访问的对象中)的使用有关的向量导致拒绝服务(堆内存破坏)或者产生其他未明影响。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-4646 | Hastymail2跨站脚本攻击漏洞 | |
| CVE-2011-0489 | Objectivity/DB服务器组件信息泄露和拒绝服务漏洞 | |
| CVE-2011-0488 | Indusoft NTWebServer.exe栈缓冲区溢出漏洞 | |
| CVE-2011-0487 | ICQ 7任意代码执行漏洞 | |
| CVE-2011-0486 | IBM Cognos 8 Business Intelligence cognos.cgi跨站脚本攻击漏洞 | |
| CVE-2011-0408 | libpng PNG图像缓冲区溢出漏洞 | |
| CVE-2011-0272 | HP LoadRunner未指定的远程代码执行漏洞 | |
| CVE-2011-0010 | sudo check.c文件预设认证请求绕过漏洞 | |
| CVE-2010-4696 | Joomla! index.php文件多个SQL注入漏洞 | |
| CVE-2006-7243 | PHP绕过预设的访问限制漏洞 | |
| CVE-2010-4531 | PCSC-Lite 缓冲区错误漏洞 | |
| CVE-2010-4530 | PCSC-Lite 数字错误漏洞 | |
| CVE-2010-4263 | Linux kernel VLAN标签拒绝服务漏洞 | |
| CVE-2010-4166 | Joomla!多个SQL注入漏洞 | |
| CVE-2009-5051 | Hastymail2 cookie配置错误漏洞 | |
| CVE-2010-4700 | PHP set_magic_quotes_runtime函数SQL注入漏洞 | |
| CVE-2010-4699 | PHP iconv_mime_decode_headers函数远程未明漏洞 | |
| CVE-2010-4698 | PHP栈缓冲区溢出漏洞 |
No comments yet