Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-0397

EPSS 4.52% · P89
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-0397

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a filename argument to convert, which may be called by other web applications.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
ImageMagick文件名处理远程格式化字符串漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
ImageMagick 6.0.2.5之前版本的image.c中的SetImageInfo函数存在格式化字符串漏洞,允许远程攻击者通过待转换filename参数中的格式化字符串限定符来引起拒绝服务(应用程序崩溃)攻击以及可能执行任意代码,且该参数可以被其他Web应用程序调用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-0397

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0397

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-03-07 · 33 CVEs total

CVE-2005-0667Sylpheed 邮件客户端 缓冲区溢出漏洞
CVE-2005-0682Drupal 跨站脚本攻击漏洞
CVE-2005-0681Nokia Symbian 60 拒绝服务漏洞
CVE-2005-0680Download Center Lite 'download_center_lite.inc.php'远程代码执行漏洞
CVE-2005-0679Tell A Friend Script PHP远程文件包含漏洞
CVE-2005-0678Form Mail Script PHP远程文件包含漏洞
CVE-2005-0677index.php for Zorum 漏洞
CVE-2005-0676Zorum 漏洞
CVE-2005-0675Zorum index.php跨站脚本攻击漏洞
CVE-2005-0674PABox 跨站脚本攻击漏洞
CVE-2005-0673phpBB 跨站脚本攻击漏洞
CVE-2005-0672Ca3DE 任意代码执行漏洞
CVE-2005-0671Carsten的3D Engine 格式化字符串漏洞
CVE-2005-0670PHPCoin多个远程输入验证漏洞
CVE-2005-0669PHPCoin多个远程输入验证漏洞
CVE-2005-0668HTTP Anti Virus Proxy 不明漏洞
CVE-2003-1088PHPOutSourcing Zorum跨站脚本漏洞
CVE-2005-0666PaX本地权限提升漏洞
CVE-2005-0665XV文件名处理远程格式化字符串漏洞
CVE-2005-0663MercuryBoard SQL注入漏洞

Showing top 20 of 33 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-0397

No comments yet


Leave a comment