Описание
PHPIDS before 0.7 does not properly implement Regular Expression Denial of Service (ReDoS) filters, which allows remote attackers to bypass rulesets and add PHP sequences to a file via unspecified vectors.
Ссылки
- URL Repurposed
- URL Repurposed
Уязвимые конфигурации
Конфигурация 1Версия до 0.6.5 (включая)
Одно из
cpe:2.3:a:phpids:phpids:*:*:*:*:*:*:*:*
cpe:2.3:a:phpids:phpids:0.6.4:*:*:*:*:*:*:*
EPSS
Процентиль: 47%
0.00239
Низкий
7.5 High
CVSS2
Дефекты
CWE-94
Связанные уязвимости
debian
около 14 лет назад
PHPIDS before 0.7 does not properly implement Regular Expression Denia ...
github
больше 3 лет назад
PHPIDS before 0.7 does not properly implement Regular Expression Denial of Service (ReDoS) filters, which allows remote attackers to bypass rulesets and add PHP sequences to a file via unspecified vectors.
EPSS
Процентиль: 47%
0.00239
Низкий
7.5 High
CVSS2
Дефекты
CWE-94