Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
LiteCart before 2.1.2 allows remote attackers to cause a denial of service (memory consumption) via URIs that do not exist, because public_html/logs/not_found.log grows without bound, and is loaded into memory for each request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LiteCart 安全漏洞
Vulnerability Description
LiteCart是一套基于PHP的免费电子商务平台。该平台提供产品分类、付款结账和搜索引擎等功能。 LiteCart 2.1.2版本中存在安全漏洞,该漏洞源于public_html/logs/not_found.log文件可以无限扩大,并且当调用不存在的URL时程序会将整个public_html/logs/not_found.log文件加载到RAM中。远程攻击者可利用该漏洞造成拒绝服务(内存消耗)。
CVSS Information
N/A
Vulnerability Type
N/A