Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The get_dataroot_image_path function in lib/file.php in Mahara before 1.4.1 does not properly validate uploaded image files, which allows remote attackers to cause a denial of service (memory consumption) via a (1) large or (2) invalid image.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mahara 拒绝服务漏洞
Vulnerability Description
Catalyst Mahara是新西兰Catalyst IT公司的一套社交网络系统。该系统包含博客、履历表生成器、文件管理器等。 Mahara 1.4.1之前版本中存在拒绝服务漏洞。攻击者可利用该漏洞导致应用程序崩溃,并拒绝服务合法用户。
CVSS Information
N/A
Vulnerability Type
N/A