Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3660

Опубликовано: 15 авг. 2008
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

feisty

DNE

gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needed

Показывать по

РелизСтатусПримечание
dapper

released

5.1.2-1ubuntu3.13
devel

not-affected

5.2.6.dfsg.1-3ubuntu2
feisty

ignored

end of life, was needed
gutsy

released

5.2.3-1ubuntu6.5
hardy

released

5.2.4-2ubuntu5.5
intrepid

released

5.2.6-2ubuntu4.1
jaunty

not-affected

5.2.6.dfsg.1-3ubuntu2
karmic

not-affected

5.2.6.dfsg.1-3ubuntu2
upstream

needed

Показывать по

EPSS

Процентиль: 96%
0.22611
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 17 лет назад

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php.

nvd
почти 17 лет назад

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php.

debian
почти 17 лет назад

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI ...

github
около 3 лет назад

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php.

oracle-oval
около 16 лет назад

ELSA-2009-0338: php security update (MODERATE)

EPSS

Процентиль: 96%
0.22611
Средний

5 Medium

CVSS2