Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4 009

Количество 4 009

redhat логотип

CVE-2017-9119

больше 9 лет назад

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact by triggering crafted operations on array data structures.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2017-9119

больше 9 лет назад

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact by triggering crafted operations on array data structures.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-9119

больше 9 лет назад

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 all ...

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2015-2326

больше 6 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2015-2326

больше 11 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-2326

больше 6 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2015-2326

больше 6 лет назад

The pcre_compile2 function in PCRE before 8.37 allows context-dependen ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2015-2325

больше 6 лет назад

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2015-2325

больше 11 лет назад

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2015-2325

больше 6 лет назад

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2015-2325

больше 6 лет назад

The compile_branch function in PCRE before 8.37 allows context-depende ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2011-2483

около 15 лет назад

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2011-2483

около 15 лет назад

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2011-2483

около 15 лет назад

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2011-2483

около 15 лет назад

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain plat ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2007-3205

больше 19 лет назад

The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by specifying variable names and values in the string to be parsed. NOTE: it is not clear whether this is a design limitation of the function or a bug in PHP, although it is likely to be regarded as a bug in Hardened-PHP and Suhosin.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2007-3205

больше 19 лет назад

The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, ...

CVSS2: 5
EPSS: Низкий
fstec логотип

BDU:2026-08591

4 месяца назад

Уязвимость функции urldecode() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2026-08590

4 месяца назад

Уязвимость функции mb_regex_encoding() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-08445

4 месяца назад

Уязвимость класса SoapServer интерпретатора языка программирования PHP, связанная с использованием памяти после её освобождения, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2017-9119

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact by triggering crafted operations on array data structures.

CVSS3: 5.9
4%
Низкий
больше 9 лет назад
nvd логотип
CVE-2017-9119

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact by triggering crafted operations on array data structures.

CVSS3: 9.8
4%
Низкий
больше 9 лет назад
debian логотип
CVE-2017-9119

The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 all ...

CVSS3: 9.8
4%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2015-2326

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
2%
Низкий
больше 6 лет назад
redhat логотип
CVE-2015-2326

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS2: 4.3
2%
Низкий
больше 11 лет назад
nvd логотип
CVE-2015-2326

The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".

CVSS3: 5.5
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2015-2326

The pcre_compile2 function in PCRE before 8.37 allows context-dependen ...

CVSS3: 5.5
2%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2015-2325

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS3: 7.8
2%
Низкий
больше 6 лет назад
redhat логотип
CVE-2015-2325

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS2: 6.8
2%
Низкий
больше 11 лет назад
nvd логотип
CVE-2015-2325

The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.

CVSS3: 7.8
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2015-2325

The compile_branch function in PCRE before 8.37 allows context-depende ...

CVSS3: 7.8
2%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2011-2483

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 5
5%
Низкий
около 15 лет назад
redhat логотип
CVE-2011-2483

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 4.3
5%
Низкий
около 15 лет назад
nvd логотип
CVE-2011-2483

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain platforms, PostgreSQL before 8.4.9, and other products, does not properly handle 8-bit characters, which makes it easier for context-dependent attackers to determine a cleartext password by leveraging knowledge of a password hash.

CVSS2: 5
5%
Низкий
около 15 лет назад
debian логотип
CVE-2011-2483

crypt_blowfish before 1.1, as used in PHP before 5.3.7 on certain plat ...

CVSS2: 5
5%
Низкий
около 15 лет назад
nvd логотип
CVE-2007-3205

The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by specifying variable names and values in the string to be parsed. NOTE: it is not clear whether this is a design limitation of the function or a bug in PHP, although it is likely to be regarded as a bug in Hardened-PHP and Suhosin.

CVSS2: 5
2%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-3205

The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, ...

CVSS2: 5
2%
Низкий
больше 19 лет назад
fstec логотип
BDU:2026-08591

Уязвимость функции urldecode() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-08590

Уязвимость функции mb_regex_encoding() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-08445

Уязвимость класса SoapServer интерпретатора языка программирования PHP, связанная с использованием памяти после её освобождения, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании

CVSS3: 9.8
0%
Низкий
4 месяца назад

Уязвимостей на страницу