漏洞描述 Ghostscript是用于显示PostScript文件或向非PostScript打印机打印这些文件的程序。 Ghostscript存在漏洞,攻击者可以通过包含无限递归程序调用的PostScript文件执行任意代码,破坏解析器堆栈的内存。
相关漏洞推荐 CVE-2021-29484: Ghost CMS <=4.32 - Cross-Site Scripting POC 2025-08-01 | Ghost CMS Ghost CMS 4.0.0 to 4.3.2 contains a DOM cross-site scripting vulnerability. An unused endpoint added... CVE-2023-32235: Ghost CMS < 5.42.1 - Path Traversal POC 2025-08-01 | Ghost CMS Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's f... CVE-2024-6420: Hide My WP Ghost < 5.2.02 - Hidden Login Page Disclosure POC 2025-08-01 | Hide My WP Ghost The Hide My WP Ghost plugin does not prevent redirects to the login page via the auth_redirect WordP... CVE-2020-1938: Ghostcat - Apache Tomcat - AJP File Read/Inclusion Vulnerability POC 2025-09-01 | Apache Tomcat When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to... SourceCodester Pet Grooming Management Software SQL注入漏洞 无POC 2025-09-22 00:22:31 | SourceCodester Pet Grooming Management Software SourceCodester Pet Grooming Management Software是SourceCodester开源的一个宠物美容管理系统。 SourceCodester Pet Groo...