Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SQLite 安全漏洞
Vulnerability Description
SQLite是一款轻型的数据库,是遵守ACID的关系型数据库管理系统。 SQLite 3.40.0及之前版本存在安全漏洞,该漏洞源于当依靠--safe执行不受信任的CLI脚本时,没有正确实现azProhibitedFunctions保护机制,而是允许UDF函数。
CVSS Information
N/A
Vulnerability Type
N/A