Логотип exploitDog
bind:"BDU:2021-00098" OR bind:"CVE-2020-7062"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2021-00098" OR bind:"CVE-2020-7062"

Количество 13

Количество 13

fstec логотип

BDU:2021-00098

больше 5 лет назад

Уязвимость интерпретатора языка программирования PHP, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2020-7062

больше 5 лет назад

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-7062

больше 5 лет назад

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2020-7062

больше 5 лет назад

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-7062

больше 5 лет назад

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-rrwc-c46p-f3v6

около 3 лет назад

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0658-1

больше 5 лет назад

Security update for php5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0647-1

больше 5 лет назад

Security update for php72

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0341-1

больше 5 лет назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0622-1

больше 5 лет назад

Security update for php7

EPSS: Низкий
rocky логотип

RLSA-2020:3662

почти 5 лет назад

Moderate: php:7.3 security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3662

почти 5 лет назад

ELSA-2020-3662: php:7.3 security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4067-1

больше 2 лет назад

Security update for php7

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2021-00098

Уязвимость интерпретатора языка программирования PHP, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 4.3
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-7062

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-7062

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-7062

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

CVSS3: 7.5
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-7062

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below ...

CVSS3: 7.5
1%
Низкий
больше 5 лет назад
github логотип
GHSA-rrwc-c46p-f3v6

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.

1%
Низкий
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2020:0658-1

Security update for php5

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:0647-1

Security update for php72

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0341-1

Security update for php7

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:0622-1

Security update for php7

больше 5 лет назад
rocky логотип
RLSA-2020:3662

Moderate: php:7.3 security, bug fix, and enhancement update

почти 5 лет назад
oracle-oval логотип
ELSA-2020-3662

ELSA-2020-3662: php:7.3 security, bug fix, and enhancement update (MODERATE)

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2022:4067-1

Security update for php7

больше 2 лет назад

Уязвимостей на страницу