Логотип exploitDog
product: "php"
Консоль
Логотип exploitDog

exploitDog

product: "php"

Количество 3 866

Количество 3 866

debian логотип

CVE-2007-1883

больше 18 лет назад

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-depende ...

CVSS2: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2007-1864

больше 18 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2007-1864

больше 18 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

EPSS: Низкий
nvd логотип

CVE-2007-1864

больше 18 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2007-1864

больше 18 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2007-1835

больше 18 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2007-1835

больше 18 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
EPSS: Низкий
debian логотип

CVE-2007-1835

больше 18 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session ...

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2007-1825

больше 18 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2007-1825

больше 18 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

EPSS: Низкий
nvd логотип

CVE-2007-1825

больше 18 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2007-1825

больше 18 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2. ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2007-1824

больше 18 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2007-1824

больше 18 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
EPSS: Низкий
debian логотип

CVE-2007-1824

больше 18 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 befo ...

CVSS2: 5.1
EPSS: Низкий
ubuntu логотип

CVE-2007-1777

больше 18 лет назад

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2007-1777

больше 18 лет назад

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2007-1777

больше 18 лет назад

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 ...

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2007-1718

больше 18 лет назад

CRLF injection vulnerability in the mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows remote attackers to inject arbitrary e-mail headers and possibly conduct spam attacks via a control character immediately following folding of the (1) Subject or (2) To parameter, as demonstrated by a parameter containing a "\r\n\t\n" sequence, related to an increment bug in the SKIP_LONG_HEADER_SEP macro.

CVSS2: 7.8
EPSS: Средний
redhat логотип

CVE-2007-1718

больше 18 лет назад

CRLF injection vulnerability in the mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows remote attackers to inject arbitrary e-mail headers and possibly conduct spam attacks via a control character immediately following folding of the (1) Subject or (2) To parameter, as demonstrated by a parameter containing a "\r\n\t\n" sequence, related to an increment bug in the SKIP_LONG_HEADER_SEP macro.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2007-1883

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-depende ...

CVSS2: 7.8
0%
Низкий
больше 18 лет назад
ubuntu логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
5%
Низкий
больше 18 лет назад
redhat логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

5%
Низкий
больше 18 лет назад
nvd логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
5%
Низкий
больше 18 лет назад
debian логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, ...

CVSS2: 7.5
5%
Низкий
больше 18 лет назад
ubuntu логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
0%
Низкий
больше 18 лет назад
nvd логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
0%
Низкий
больше 18 лет назад
debian логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session ...

CVSS2: 4.6
0%
Низкий
больше 18 лет назад
ubuntu логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
7%
Низкий
больше 18 лет назад
redhat логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

7%
Низкий
больше 18 лет назад
nvd логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
7%
Низкий
больше 18 лет назад
debian логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2. ...

CVSS2: 7.5
7%
Низкий
больше 18 лет назад
ubuntu логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
3%
Низкий
больше 18 лет назад
nvd логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
3%
Низкий
больше 18 лет назад
debian логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 befo ...

CVSS2: 5.1
3%
Низкий
больше 18 лет назад
ubuntu логотип
CVE-2007-1777

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
20%
Средний
больше 18 лет назад
nvd логотип
CVE-2007-1777

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
20%
Средний
больше 18 лет назад
debian логотип
CVE-2007-1777

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 ...

CVSS2: 7.5
20%
Средний
больше 18 лет назад
ubuntu логотип
CVE-2007-1718

CRLF injection vulnerability in the mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows remote attackers to inject arbitrary e-mail headers and possibly conduct spam attacks via a control character immediately following folding of the (1) Subject or (2) To parameter, as demonstrated by a parameter containing a "\r\n\t\n" sequence, related to an increment bug in the SKIP_LONG_HEADER_SEP macro.

CVSS2: 7.8
17%
Средний
больше 18 лет назад
redhat логотип
CVE-2007-1718

CRLF injection vulnerability in the mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows remote attackers to inject arbitrary e-mail headers and possibly conduct spam attacks via a control character immediately following folding of the (1) Subject or (2) To parameter, as demonstrated by a parameter containing a "\r\n\t\n" sequence, related to an increment bug in the SKIP_LONG_HEADER_SEP macro.

17%
Средний
больше 18 лет назад

Уязвимостей на страницу