Количество 8
Количество 8

CVE-2010-3870
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.

CVE-2010-3870
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.

CVE-2010-3870
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.
CVE-2010-3870
The utf8_decode function in PHP before 5.3.4 does not properly handle ...
GHSA-gvvf-r2h9-2v8x
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.

BDU:2022-02600
Уязвимость функции utf8_decode интерпретатора языка программирования PHP, позволяющая нарушителю провести XSS-атаки
ELSA-2011-0195
ELSA-2011-0195: php security update (MODERATE)
ELSA-2010-0919
ELSA-2010-0919: php security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2010-3870 The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string. | CVSS2: 6.8 | 1% Низкий | больше 14 лет назад |
![]() | CVE-2010-3870 The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string. | CVSS2: 4.3 | 1% Низкий | больше 15 лет назад |
![]() | CVE-2010-3870 The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string. | CVSS2: 6.8 | 1% Низкий | больше 14 лет назад |
CVE-2010-3870 The utf8_decode function in PHP before 5.3.4 does not properly handle ... | CVSS2: 6.8 | 1% Низкий | больше 14 лет назад | |
GHSA-gvvf-r2h9-2v8x The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string. | 1% Низкий | около 3 лет назад | ||
![]() | BDU:2022-02600 Уязвимость функции utf8_decode интерпретатора языка программирования PHP, позволяющая нарушителю провести XSS-атаки | CVSS3: 7.3 | 1% Низкий | больше 14 лет назад |
ELSA-2011-0195 ELSA-2011-0195: php security update (MODERATE) | больше 14 лет назад | |||
ELSA-2010-0919 ELSA-2010-0919: php security update (MODERATE) | больше 14 лет назад |
Уязвимостей на страницу