Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lib/execute/execSetResults.php in TestLink before 1.9.13 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the filter_result_result parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
TestLink‘execSetResults.php’代码注入漏洞
Vulnerability Description
Testlink是TestLink团队开发的一套基于PHP的开源测试管理工具。该工具提供测试需求管理、测试用例管理和测试数据统计等功能。 TestLink 1.9.13之前版本的lib/execute/execSetResults.php脚本中存在安全漏洞。远程攻击者可借助‘filter_result_result’参数利用该漏洞实施PHP对象注入攻击,执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A