PHP — популярный язык сценариев общего назначения, особенно подходящий для веб-разработки.
Релизный цикл, информация об уязвимостях
График релизов
Количество 3 768
CVE-2005-3054
fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not p ...

CVE-2005-3054
fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not properly restrict access to other directories when the open_basedir directive includes a trailing slash, which allows PHP scripts in one directory to access files in other directories whose names are substrings of the original directory.

CVE-2005-1042
Integer overflow in the exif_process_IFD_TAG function in exif.c in PHP before 4.3.11 may allow remote attackers to execute arbitrary code via an IFD tag that leads to a negative byte count.

CVE-2005-0596
PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size.

CVE-2005-0525
The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek.

CVE-2005-0524
The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a -8 size value.
CVE-2005-0596
PHP 4 (PHP4) allows attackers to cause a denial of service (daemon cra ...
CVE-2005-1042
Integer overflow in the exif_process_IFD_TAG function in exif.c in PHP ...
CVE-2005-0525
The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 a ...
CVE-2005-0524
The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 an ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
CVE-2005-3054 fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not p ... | CVSS2: 2.1 | 1% Низкий | больше 19 лет назад | |
![]() | CVE-2005-3054 fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not properly restrict access to other directories when the open_basedir directive includes a trailing slash, which allows PHP scripts in one directory to access files in other directories whose names are substrings of the original directory. | CVSS2: 2.1 | 1% Низкий | больше 19 лет назад |
![]() | CVE-2005-1042 Integer overflow in the exif_process_IFD_TAG function in exif.c in PHP before 4.3.11 may allow remote attackers to execute arbitrary code via an IFD tag that leads to a negative byte count. | CVSS2: 7.5 | 7% Низкий | около 20 лет назад |
![]() | CVE-2005-0596 PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size. | CVSS2: 2.1 | 0% Низкий | около 20 лет назад |
![]() | CVE-2005-0525 The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek. | CVSS2: 5 | 7% Низкий | около 20 лет назад |
![]() | CVE-2005-0524 The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a -8 size value. | CVSS2: 5 | 5% Низкий | около 20 лет назад |
CVE-2005-0596 PHP 4 (PHP4) allows attackers to cause a denial of service (daemon cra ... | CVSS2: 2.1 | 0% Низкий | около 20 лет назад | |
CVE-2005-1042 Integer overflow in the exif_process_IFD_TAG function in exif.c in PHP ... | CVSS2: 7.5 | 7% Низкий | около 20 лет назад | |
CVE-2005-0525 The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 a ... | CVSS2: 5 | 7% Низкий | около 20 лет назад | |
CVE-2005-0524 The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 an ... | CVSS2: 5 | 5% Низкий | около 20 лет назад |
Уязвимостей на страницу