PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。SPL(Standard PHP Library,PHP标准库)是其中的一个用于解决典型问题(standard problems)的接口与类的集合组件。 PHP 5.5.14及之前版本的SPL组件中的ext/spl/spl_array.c文件存在释放后重用漏洞。攻击者可通过调用特制的ArrayIterator利用该漏洞造成拒绝服务或产生其他影响。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2014-4845 | WordPress BannerMan插件跨站脚本漏洞 | |
| CVE-2014-4670 | PHP SPL组件释放后重用漏洞 | |
| CVE-2014-3888 | 多款Yokogawa产品基于栈的缓冲区溢出漏洞 | |
| CVE-2014-3318 | Cisco Unified Communications Manager DNA组件输入验证漏洞 | |
| CVE-2014-3316 | Cisco Unified Communications Manager DNA组件输入验证漏洞 | |
| CVE-2014-3315 | Cisco Unified Communications Manager DNA组件跨站脚本漏洞 | |
| CVE-2014-3311 | Cisco WebEx Meetings Server和WebEx Meeting Center 基于栈的缓冲区溢出漏洞 | |
| CVE-2014-3310 | Cisco WebEx Meetings Server和WebEx Meeting Center 输入验证漏洞 | |
| CVE-2014-2963 | Liferay Portal 跨站脚本漏洞 | |
| CVE-2014-4846 | WordPress Meta Slider插件跨站脚本漏洞 | |
| CVE-2014-4847 | WordPress Random Banner插件跨站脚本漏洞 | |
| CVE-2014-4856 | WordPress Polldaddy Polls & Ratings插件跨站脚本漏洞 | |
| CVE-2014-4855 | WordPress Polylang插件跨站脚本漏洞 | |
| CVE-2014-4854 | WordPress WP Construction Mode插件跨站脚本漏洞 | |
| CVE-2014-4853 | OpenDocMan 跨站脚本漏洞 | |
| CVE-2014-4852 | Digital Craft AtomCMS SQL注入漏洞 | |
| CVE-2014-4851 | FoeCMS 开放重定向漏洞 | |
| CVE-2014-4850 | FoeCMS SQL注入漏洞 | |
| CVE-2014-4849 | FoeCMS 跨站脚本漏洞 | |
| CVE-2014-4848 | WordPress Blogstand Banner插件跨站脚本漏洞 |
No comments yet