Количество 5
Количество 5
CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.
CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.
CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.4 ...
GHSA-2g3c-3p8m-g2p4
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.
BDU:2016-01363
Уязвимость интерпретатора PHP, позволяющая нарушителю выполнить произвольные команды операционной системы
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 6% Низкий | больше 9 лет назад | |
CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 6% Низкий | больше 9 лет назад | |
CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.4 ... | CVSS3: 9.8 | 6% Низкий | больше 9 лет назад | |
GHSA-2g3c-3p8m-g2p4 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 6% Низкий | больше 3 лет назад | |
BDU:2016-01363 Уязвимость интерпретатора PHP, позволяющая нарушителю выполнить произвольные команды операционной системы | CVSS2: 10 | 6% Низкий | больше 9 лет назад |
Уязвимостей на страницу