Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

PHP

PHPпопулярный язык сценариев общего назначения, особенно подходящий для веб-разработки.

Релизный цикл, информация об уязвимостях

Продукт: PHP
Вендор: php

График релизов

8.28.38.48.5202220232024202520262027202820292030

Недавние уязвимости PHP

Количество 3 954

debian логотип

CVE-2002-2215

больше 23 лет назад

The imap_header function in the IMAP functionality for PHP before 4.3. ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2002-2214

больше 23 лет назад

The php_if_imap_mime_header_decode function in the IMAP functionality ...

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2002-1396

больше 23 лет назад

Heap-based buffer overflow in the wordwrap function in PHP after 4.1.2 and before 4.3.0 may allow attackers to cause a denial of service or execute arbitrary code.

EPSS: Низкий
nvd логотип

CVE-2002-0985

почти 24 года назад

Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0986

почти 24 года назад

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control characters from its arguments, which could allow remote attackers to modify mail message content, including mail headers, and possibly use PHP as a "spam proxy."

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2002-0986

почти 24 года назад

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control ch ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2002-0985

почти 24 года назад

Argument injection vulnerability in the mail function for PHP 4.x to 4 ...

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2002-2215

почти 24 года назад

The imap_header function in the IMAP functionality for PHP before 4.3.0 allows remote attackers to cause a denial of service via an e-mail message with a large number of "To" addresses, which triggers an error in the rfc822_write_address function.

EPSS: Низкий
redhat логотип

CVE-2002-0985

почти 24 года назад

Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.

EPSS: Низкий
redhat логотип

CVE-2002-0986

почти 24 года назад

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control characters from its arguments, which could allow remote attackers to modify mail message content, including mail headers, and possibly use PHP as a "spam proxy."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2002-2215

The imap_header function in the IMAP functionality for PHP before 4.3. ...

CVSS2: 5
1%
Низкий
больше 23 лет назад
debian логотип
CVE-2002-2214

The php_if_imap_mime_header_decode function in the IMAP functionality ...

CVSS2: 5
2%
Низкий
больше 23 лет назад
redhat логотип
CVE-2002-1396

Heap-based buffer overflow in the wordwrap function in PHP after 4.1.2 and before 4.3.0 may allow attackers to cause a denial of service or execute arbitrary code.

4%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0985

Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.

CVSS2: 7.5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0986

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control characters from its arguments, which could allow remote attackers to modify mail message content, including mail headers, and possibly use PHP as a "spam proxy."

CVSS2: 5
3%
Низкий
почти 24 года назад
debian логотип
CVE-2002-0986

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control ch ...

CVSS2: 5
3%
Низкий
почти 24 года назад
debian логотип
CVE-2002-0985

Argument injection vulnerability in the mail function for PHP 4.x to 4 ...

CVSS2: 7.5
3%
Низкий
почти 24 года назад
redhat логотип
CVE-2002-2215

The imap_header function in the IMAP functionality for PHP before 4.3.0 allows remote attackers to cause a denial of service via an e-mail message with a large number of "To" addresses, which triggers an error in the rfc822_write_address function.

1%
Низкий
почти 24 года назад
redhat логотип
CVE-2002-0985

Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.

3%
Низкий
почти 24 года назад
redhat логотип
CVE-2002-0986

The mail function in PHP 4.x to 4.2.2 does not filter ASCII control characters from its arguments, which could allow remote attackers to modify mail message content, including mail headers, and possibly use PHP as a "spam proxy."

3%
Низкий
почти 24 года назад

Уязвимостей на страницу


Поделиться