Количество 16
Количество 16
BDU:2024-07320
Уязвимость функции PDO::quote компонента ext/pdo_sqlite/sqlite_driver.c языка программирования PHP, связанная с целочисленным переполнением, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
CVE-2022-31631
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.
CVE-2022-31631
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.
CVE-2022-31631
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.
CVE-2022-31631
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before ...
SUSE-SU-2023:0084-1
Security update for php7
SUSE-SU-2023:0074-1
Security update for php8
SUSE-SU-2023:0073-1
Security update for php7
GHSA-4qmr-c42j-3wg2
In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.
SUSE-SU-2023:0072-1
Security update for php74
SUSE-SU-2023:0476-1
Security update for php7
RLSA-2023:0965
Moderate: php security update
ELSA-2023-2903
ELSA-2023-2903: php:7.4 security update (MODERATE)
ELSA-2023-2417
ELSA-2023-2417: 8.1 security update (MODERATE)
ELSA-2023-0965
ELSA-2023-0965: php security update (MODERATE)
ELSA-2023-0848
ELSA-2023-0848: php:8.0 security update (MODERATE)
Уязвимостей на страницу
Уязвимость  | CVSS  | EPSS  | Опубликовано  | |
|---|---|---|---|---|
BDU:2024-07320 Уязвимость функции PDO::quote компонента ext/pdo_sqlite/sqlite_driver.c языка программирования PHP, связанная с целочисленным переполнением, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании  | CVSS3: 6.9  | 0% Низкий | около 3 лет назад | |
CVE-2022-31631 In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.  | CVSS3: 9.1  | 0% Низкий | 9 месяцев назад | |
CVE-2022-31631 In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.  | CVSS3: 5.9  | 0% Низкий | почти 3 года назад | |
CVE-2022-31631 In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.  | CVSS3: 9.1  | 0% Низкий | 9 месяцев назад | |
CVE-2022-31631 In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before ...  | CVSS3: 9.1  | 0% Низкий | 9 месяцев назад | |
SUSE-SU-2023:0084-1 Security update for php7  | 0% Низкий | почти 3 года назад | ||
SUSE-SU-2023:0074-1 Security update for php8  | 0% Низкий | почти 3 года назад | ||
SUSE-SU-2023:0073-1 Security update for php7  | 0% Низкий | почти 3 года назад | ||
GHSA-4qmr-c42j-3wg2 In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities.  | CVSS3: 9.1  | 0% Низкий | 9 месяцев назад | |
SUSE-SU-2023:0072-1 Security update for php74  | почти 3 года назад | |||
SUSE-SU-2023:0476-1 Security update for php7  | больше 2 лет назад | |||
RLSA-2023:0965 Moderate: php security update  | больше 2 лет назад | |||
ELSA-2023-2903 ELSA-2023-2903: php:7.4 security update (MODERATE)  | больше 2 лет назад | |||
ELSA-2023-2417 ELSA-2023-2417: 8.1 security update (MODERATE)  | больше 2 лет назад | |||
ELSA-2023-0965 ELSA-2023-0965: php security update (MODERATE)  | больше 2 лет назад | |||
ELSA-2023-0848 ELSA-2023-0848: php:8.0 security update (MODERATE)  | больше 2 лет назад | 
Уязвимостей на страницу