在 ImageMagick 7.1.2-32 之前版本及 6.9.13-57 之前版本中,LoadPolicyCache 函数存在一个策略绕过漏洞。当 policy.xml 文件使用非标准的 DOCTYPE 声明时,该漏洞会导致安全策略规则被静默跳过。具体来说,若 DOCTYPE 声明未以 "]>" 结尾,解析器将会读取并消耗文件的其余部分,从而导致所有策略规则未被应用,使得原本受限制的操作变为允许执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ImageMagick | ImageMagick | 7.0.0-0 ~ 7.1.2-32 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet