Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-4658

Опубликовано: 04 сент. 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, which has unknown impact and attack vectors, possibly related to a format string vulnerability.

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.10
devel

not-affected

5.2.4-2ubuntu3
edgy

released

5.1.6-1ubuntu2.7
feisty

released

5.2.1-0ubuntu1.5
gutsy

released

5.2.3-1ubuntu6.1
upstream

released

5.2.4

Показывать по

EPSS

Процентиль: 81%
0.01595
Низкий

7.5 High

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, which has unknown impact and attack vectors, possibly related to a format string vulnerability.

nvd
почти 18 лет назад

The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, which has unknown impact and attack vectors, possibly related to a format string vulnerability.

debian
почти 18 лет назад

The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4. ...

github
около 3 лет назад

The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, which has unknown impact and attack vectors, possibly related to a format string vulnerability.

oracle-oval
почти 18 лет назад

ELSA-2007-0890: Moderate: php security update (MODERATE)

EPSS

Процентиль: 81%
0.01595
Низкий

7.5 High

CVSS2