Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4pjr-p785-567f

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.

EPSS

Процентиль: 97%
0.33369
Средний

Связанные уязвимости

ubuntu
больше 13 лет назад

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.

redhat
больше 13 лет назад

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.

nvd
больше 13 лет назад

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.

debian
больше 13 лет назад

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 ...

oracle-oval
больше 13 лет назад

ELSA-2012-0093: php security update (CRITICAL)

EPSS

Процентиль: 97%
0.33369
Средний