Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

PHP

PHPпопулярный язык сценариев общего назначения, особенно подходящий для веб-разработки.

Релизный цикл, информация об уязвимостях

Продукт: PHP
Вендор: php

График релизов

8.28.38.48.5202220232024202520262027202820292030

Недавние уязвимости PHP

Количество 4 010

nvd логотип

CVE-2011-3336

больше 6 лет назад

regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2011-3336

больше 6 лет назад

regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-7060

больше 6 лет назад

When using certain mbstring functions to convert multibyte encodings, ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-7060

больше 6 лет назад

When using certain mbstring functions to convert multibyte encodings, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause function mbfl_filt_conv_big5_wchar to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-7059

больше 6 лет назад

When using fgetss() function to read data with stripping tags, in PHP ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-7059

больше 6 лет назад

When using fgetss() function to read data with stripping tags, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause this function to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-7059

больше 6 лет назад

When using fgetss() function to read data with stripping tags, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause this function to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-7060

больше 6 лет назад

When using certain mbstring functions to convert multibyte encodings, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause function mbfl_filt_conv_big5_wchar to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2020-01391

больше 6 лет назад

Уязвимость функции mbstring() интерпретатора языка программирования PHP, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании

CVSS3: 9.1
EPSS: Низкий
fstec логотип

BDU:2020-00950

больше 6 лет назад

Уязвимость в файле graph_realtime.php программного средства мониторинга сети Cacti, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2011-3336

regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

CVSS3: 7.5
6%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2011-3336

regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

CVSS3: 7.5
6%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-7060

When using certain mbstring functions to convert multibyte encodings, ...

CVSS3: 6.5
9%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-7060

When using certain mbstring functions to convert multibyte encodings, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause function mbfl_filt_conv_big5_wchar to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
9%
Низкий
больше 6 лет назад
debian логотип
CVE-2020-7059

When using fgetss() function to read data with stripping tags, in PHP ...

CVSS3: 6.5
7%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-7059

When using fgetss() function to read data with stripping tags, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause this function to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
7%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-7059

When using fgetss() function to read data with stripping tags, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause this function to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
7%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2020-7060

When using certain mbstring functions to convert multibyte encodings, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause function mbfl_filt_conv_big5_wchar to read past the allocated buffer. This may lead to information disclosure or crash.

CVSS3: 6.5
9%
Низкий
больше 6 лет назад
fstec логотип
BDU:2020-01391

Уязвимость функции mbstring() интерпретатора языка программирования PHP, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании

CVSS3: 9.1
9%
Низкий
больше 6 лет назад
fstec логотип
BDU:2020-00950

Уязвимость в файле graph_realtime.php программного средства мониторинга сети Cacti, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
74%
Высокий
больше 6 лет назад

Уязвимостей на страницу


Поделиться