Логотип exploitDog
bind:"CVE-2018-5712" OR bind:"CVE-2019-9024" OR bind:"CVE-2018-10547" OR bind:"CVE-2018-7584"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-5712" OR bind:"CVE-2019-9024" OR bind:"CVE-2018-10547" OR bind:"CVE-2018-7584"

Количество 50

Количество 50

oracle-oval логотип

ELSA-2020-1112

около 5 лет назад

ELSA-2020-1112: php security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2018-5712

больше 7 лет назад

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
EPSS: Высокий
redhat логотип

CVE-2018-5712

около 8 лет назад

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
EPSS: Высокий
nvd логотип

CVE-2018-5712

больше 7 лет назад

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
EPSS: Высокий
debian логотип

CVE-2018-5712

больше 7 лет назад

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1 ...

CVSS3: 6.1
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2018:0806-1

около 7 лет назад

Security update for php53

EPSS: Низкий
github логотип

GHSA-p569-737x-7h7p

около 3 лет назад

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
EPSS: Высокий
fstec логотип

BDU:2019-04386

около 7 лет назад

Уязвимость на странице ошибки PHAR 404 интерпретатора языка программирования PHP, позволяющая нарушителю осуществлять межсайтовые сценарные атаки (XSS)

CVSS3: 6.1
EPSS: Высокий
suse-cvrf логотип

openSUSE-SU-2018:0318-1

больше 7 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:0248-1

больше 7 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0308-1

больше 7 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0216-1

больше 7 лет назад

Security update for php5

EPSS: Низкий
ubuntu логотип

CVE-2019-9024

больше 6 лет назад

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2019-9024

больше 6 лет назад

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 6.5
EPSS: Средний
nvd логотип

CVE-2019-9024

больше 6 лет назад

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2019-9024

больше 6 лет назад

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x ...

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-v89c-qc56-rr3m

около 3 лет назад

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
EPSS: Средний
fstec логотип

BDU:2019-01555

больше 6 лет назад

Уязвимость функции xmlrpc_decode() расширения XMLRPC интерпретатора языка программирования PHP, связана с чтением данных за границами буфера памяти, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2018-7584

больше 7 лет назад

In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

CVSS3: 9.8
EPSS: Высокий
redhat логотип

CVE-2018-7584

больше 7 лет назад

In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

CVSS3: 5.9
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2020-1112

ELSA-2020-1112: php security update (MODERATE)

около 5 лет назад
ubuntu логотип
CVE-2018-5712

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
89%
Высокий
больше 7 лет назад
redhat логотип
CVE-2018-5712

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
89%
Высокий
около 8 лет назад
nvd логотип
CVE-2018-5712

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
89%
Высокий
больше 7 лет назад
debian логотип
CVE-2018-5712

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1 ...

CVSS3: 6.1
89%
Высокий
больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:0806-1

Security update for php53

около 7 лет назад
github логотип
GHSA-p569-737x-7h7p

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

CVSS3: 6.1
89%
Высокий
около 3 лет назад
fstec логотип
BDU:2019-04386

Уязвимость на странице ошибки PHAR 404 интерпретатора языка программирования PHP, позволяющая нарушителю осуществлять межсайтовые сценарные атаки (XSS)

CVSS3: 6.1
89%
Высокий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:0318-1

Security update for php7

больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:0248-1

Security update for php5

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:0308-1

Security update for php7

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:0216-1

Security update for php5

больше 7 лет назад
ubuntu логотип
CVE-2019-9024

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
17%
Средний
больше 6 лет назад
redhat логотип
CVE-2019-9024

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 6.5
17%
Средний
больше 6 лет назад
nvd логотип
CVE-2019-9024

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
17%
Средний
больше 6 лет назад
debian логотип
CVE-2019-9024

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x ...

CVSS3: 7.5
17%
Средний
больше 6 лет назад
github логотип
GHSA-v89c-qc56-rr3m

An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. xmlrpc_decode() can allow a hostile XMLRPC server to cause PHP to read memory outside of allocated areas in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c.

CVSS3: 7.5
17%
Средний
около 3 лет назад
fstec логотип
BDU:2019-01555

Уязвимость функции xmlrpc_decode() расширения XMLRPC интерпретатора языка программирования PHP, связана с чтением данных за границами буфера памяти, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 7.5
17%
Средний
больше 6 лет назад
ubuntu логотип
CVE-2018-7584

In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

CVSS3: 9.8
82%
Высокий
больше 7 лет назад
redhat логотип
CVE-2018-7584

In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

CVSS3: 5.9
82%
Высокий
больше 7 лет назад

Уязвимостей на страницу