Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The PDORow implementation in PHP before 5.3.9 does not properly interact with the session feature, which allows remote attackers to cause a denial of service (application crash) via a crafted application that uses a PDO driver for a fetch and then calls the session_start function, as demonstrated by a crash of the Apache HTTP Server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP ‘PDORow’拒绝服务漏洞
Vulnerability Description
PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。该语言主要用于Web开发,支持多种数据库及操作系统。 PHP 5.3.9之前版本中的PDORow中存在漏洞,该漏洞源于未正确与session交互。远程攻击者可利用该漏洞借助特制的使用PDO驱动的应用程序导致拒绝服务(应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A