PHP是PHP的一种在服务器端执行的脚本语言。 PHP 8.1.30之前版本、8.2.24之前版本和8.3.12之前版本存在安全漏洞,该漏洞源于对多部分表单数据内容的解析缺陷,可能导致合法数据未被处理,从而违反数据完整性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-8926 | 8.1 HIGH | PHP CGI Parameter Injection Vulnerability (CVE-2024-4577 bypass) |
| CVE-2024-8927 | 7.5 HIGH | cgi.force_redirect configuration is bypassable due to the environment variable collision |
| CVE-2024-9026 | 3.3 LOW | PHP-FPM logs from children may be altered |
No comments yet