Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

PHP

PHPпопулярный язык сценариев общего назначения, особенно подходящий для веб-разработки.

Релизный цикл, информация об уязвимостях

Продукт: PHP
Вендор: php

График релизов

8.28.38.48.5202220232024202520262027202820292030

Недавние уязвимости PHP

Количество 3 954

nvd логотип

CVE-2006-4482

почти 20 лет назад

Multiple heap-based buffer overflows in the (1) str_repeat and (2) wordwrap functions in ext/standard/string.c in PHP before 5.1.5, when used on a 64-bit system, have unspecified impact and attack vectors, a different vulnerability than CVE-2006-1990.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2006-4486

почти 20 лет назад

Integer overflow in memory allocation routines in PHP before 5.1.6, wh ...

CVSS2: 2.6
EPSS: Низкий
debian логотип

CVE-2006-4485

почти 20 лет назад

The stripos function in PHP before 5.1.5 has unknown impact and attack ...

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2006-4482

почти 20 лет назад

Multiple heap-based buffer overflows in the (1) str_repeat and (2) wor ...

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2006-4483

почти 20 лет назад

The cURL extension files (1) ext/curl/interface.c and (2) ext/curl/str ...

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2006-4484

почти 20 лет назад

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in ...

CVSS2: 2.6
EPSS: Низкий
debian логотип

CVE-2006-4481

почти 20 лет назад

The (1) file_exists and (2) imap_reopen functions in PHP before 5.1.5 ...

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2006-4484

почти 20 лет назад

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in the GD extension in PHP before 5.1.5 allows remote attackers to have an unknown impact via a GIF file with input_code_size greater than MAX_LWZ_BITS, which triggers an overflow when initializing the table array.

CVSS2: 2.6
EPSS: Низкий
ubuntu логотип

CVE-2006-4481

почти 20 лет назад

The (1) file_exists and (2) imap_reopen functions in PHP before 5.1.5 do not check for the safe_mode and open_basedir settings, which allows local users to bypass the settings. NOTE: the error_log function is covered by CVE-2006-3011, and the imap_open function is covered by CVE-2006-1017.

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2006-4485

почти 20 лет назад

The stripos function in PHP before 5.1.5 has unknown impact and attack vectors related to an out-of-bounds read.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2006-4482

Multiple heap-based buffer overflows in the (1) str_repeat and (2) wordwrap functions in ext/standard/string.c in PHP before 5.1.5, when used on a 64-bit system, have unspecified impact and attack vectors, a different vulnerability than CVE-2006-1990.

CVSS2: 9.3
6%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4486

Integer overflow in memory allocation routines in PHP before 5.1.6, wh ...

CVSS2: 2.6
2%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4485

The stripos function in PHP before 5.1.5 has unknown impact and attack ...

CVSS2: 10
2%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4482

Multiple heap-based buffer overflows in the (1) str_repeat and (2) wor ...

CVSS2: 9.3
6%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4483

The cURL extension files (1) ext/curl/interface.c and (2) ext/curl/str ...

CVSS2: 9.3
3%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4484

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in ...

CVSS2: 2.6
7%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-4481

The (1) file_exists and (2) imap_reopen functions in PHP before 5.1.5 ...

CVSS2: 7.2
1%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2006-4484

Buffer overflow in the LWZReadByte_ function in ext/gd/libgd/gd_gif_in.c in the GD extension in PHP before 5.1.5 allows remote attackers to have an unknown impact via a GIF file with input_code_size greater than MAX_LWZ_BITS, which triggers an overflow when initializing the table array.

CVSS2: 2.6
7%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2006-4481

The (1) file_exists and (2) imap_reopen functions in PHP before 5.1.5 do not check for the safe_mode and open_basedir settings, which allows local users to bypass the settings. NOTE: the error_log function is covered by CVE-2006-3011, and the imap_open function is covered by CVE-2006-1017.

CVSS2: 7.2
1%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2006-4485

The stripos function in PHP before 5.1.5 has unknown impact and attack vectors related to an out-of-bounds read.

CVSS2: 10
2%
Низкий
почти 20 лет назад

Уязвимостей на страницу


Поделиться