Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4 000

Количество 4 000

nvd логотип

CVE-2007-1884

больше 19 лет назад

Multiple integer signedness errors in the printf function family in PHP 4 before 4.4.5 and PHP 5 before 5.2.1 on 64 bit machines allow context-dependent attackers to execute arbitrary code via (1) certain negative argument numbers that arise in the php_formatted_print function because of 64 to 32 bit truncation, and bypass a check for the maximum allowable value; and (2) a width and precision of -1, which make it possible for the php_sprintf_appendstring function to place an internal buffer at an arbitrary memory location.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2007-1884

больше 19 лет назад

Multiple integer signedness errors in the printf function family in PH ...

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2007-1883

больше 19 лет назад

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to read arbitrary memory locations via an interruption that triggers a user space error handler that changes a parameter to an arbitrary pointer, as demonstrated via the iptcembed function, which calls certain convert_to_* functions with its input parameters.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2007-1883

больше 19 лет назад

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to read arbitrary memory locations via an interruption that triggers a user space error handler that changes a parameter to an arbitrary pointer, as demonstrated via the iptcembed function, which calls certain convert_to_* functions with its input parameters.

CVSS2: 7.8
EPSS: Низкий
debian логотип

CVE-2007-1883

больше 19 лет назад

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-depende ...

CVSS2: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2007-1864

больше 19 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2007-1864

больше 19 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

EPSS: Низкий
nvd логотип

CVE-2007-1864

больше 19 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2007-1864

больше 19 лет назад

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2007-1835

больше 19 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2007-1835

больше 19 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
EPSS: Низкий
debian логотип

CVE-2007-1835

больше 19 лет назад

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session ...

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2007-1825

больше 19 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
EPSS: Средний
redhat логотип

CVE-2007-1825

больше 19 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

EPSS: Средний
nvd логотип

CVE-2007-1825

больше 19 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2007-1825

больше 19 лет назад

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2. ...

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2007-1824

больше 19 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2007-1824

больше 19 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
EPSS: Низкий
debian логотип

CVE-2007-1824

больше 19 лет назад

Buffer overflow in the php_stream_filter_create function in PHP 5 befo ...

CVSS2: 5.1
EPSS: Низкий
ubuntu логотип

CVE-2007-1777

больше 19 лет назад

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-1884

Multiple integer signedness errors in the printf function family in PHP 4 before 4.4.5 and PHP 5 before 5.2.1 on 64 bit machines allow context-dependent attackers to execute arbitrary code via (1) certain negative argument numbers that arise in the php_formatted_print function because of 64 to 32 bit truncation, and bypass a check for the maximum allowable value; and (2) a width and precision of -1, which make it possible for the php_sprintf_appendstring function to place an internal buffer at an arbitrary memory location.

CVSS2: 6.8
3%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-1884

Multiple integer signedness errors in the printf function family in PH ...

CVSS2: 6.8
3%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-1883

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to read arbitrary memory locations via an interruption that triggers a user space error handler that changes a parameter to an arbitrary pointer, as demonstrated via the iptcembed function, which calls certain convert_to_* functions with its input parameters.

CVSS2: 7.8
1%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-1883

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to read arbitrary memory locations via an interruption that triggers a user space error handler that changes a parameter to an arbitrary pointer, as demonstrated via the iptcembed function, which calls certain convert_to_* functions with its input parameters.

CVSS2: 7.8
1%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-1883

PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-depende ...

CVSS2: 7.8
1%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
3%
Низкий
больше 19 лет назад
redhat логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

3%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.

CVSS2: 7.5
3%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-1864

Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, ...

CVSS2: 7.5
3%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
1%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

CVSS2: 4.6
1%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-1835

PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session ...

CVSS2: 4.6
1%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
10%
Средний
больше 19 лет назад
redhat логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

10%
Средний
больше 19 лет назад
nvd логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

CVSS2: 7.5
10%
Средний
больше 19 лет назад
debian логотип
CVE-2007-1825

Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2. ...

CVSS2: 7.5
10%
Средний
больше 19 лет назад
ubuntu логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
3%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS2: 5.1
3%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-1824

Buffer overflow in the php_stream_filter_create function in PHP 5 befo ...

CVSS2: 5.1
3%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-1777

Integer overflow in the zip_read_entry function in PHP 4 before 4.4.5 allows remote attackers to execute arbitrary code via a ZIP archive that contains an entry with a length value of 0xffffffff, which is incremented before use in an emalloc call, triggering a heap overflow.

CVSS2: 7.5
15%
Средний
больше 19 лет назад

Уязвимостей на страницу