CNCVE编号:CNCVE-20000860 CVE编号:CVE-2000-0860 安全级别:中 漏洞中文描述: PHP versions 3和4中的文件上载功能存在漏洞,该漏洞导致远程攻击者通过设置名字匹配内部PHP脚本变量的隐藏表格域来读取任意文件。 漏洞英文描述: The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables. 漏洞参考: 系统类型:其他 漏洞类型:其他