Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
textpattern version version 4.6.2 contains a XML Injection vulnerability in Import XML feature that can result in Denial of service in context to the web server by exhausting server memory resources. This attack appear to be exploitable via Uploading a specially crafted XML file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
textpattern 安全漏洞
Vulnerability Description
textpattern是一个优秀的博客系统。 textpattern 4.6.2版本中的导入XML功能存在安全漏洞。攻击者可通过上传特制的XML文件利用该漏洞造成拒绝服务(服务器内存资源耗尽)。
CVSS Information
N/A
Vulnerability Type
N/A