Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The iconv_mime_decode_headers function in the Iconv extension in PHP before 5.3.4 does not properly handle encodings that are unrecognized by the iconv and mbstring (aka Multibyte String) implementations, which allows remote attackers to trigger an incomplete output array, and possibly bypass spam detection or have unspecified other impact, via a crafted Subject header in an e-mail message, as demonstrated by the ks_c_5601-1987 character set.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP iconv_mime_decode_headers函数远程未明漏洞
Vulnerability Description
PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。该语言主要用于Web开发,支持多种数据库及操作系统。 PHP 5.3.4之前版本中的Iconv扩展中的iconv_mime_decode_headers函数没有正确处理由iconv和mbstring(又名Multibyte String)实现无法识别的编码。远程攻击者可以借助电子邮件消息中的特制Subject头,触发不完整的输出数组,并可能绕过s
CVSS Information
N/A
Vulnerability Type
N/A