phpcrlf.txt...

- AV AC AU C I A
发布: 2002-09-11
修订: 2025-04-13

fopen(), file() and other functions in PHP have a vulnerability that makes it possible to add extra HTTP headers to HTTP queries. Attackers may use it to escape certain restrictions, like what host to access on a web server. In some cases, this vulnerability even opens up for arbitrary net connections, turning some PHP scripts into proxies and open mail relays.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息