Логотип exploitDog
bind:"CVE-2010-2950"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2010-2950"

Количество 7

Количество 7

ubuntu логотип

CVE-2010-2950

больше 14 лет назад

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2010-2950

около 15 лет назад

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2010-2950

больше 14 лет назад

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2010-2950

больше 14 лет назад

Format string vulnerability in stream.c in the phar extension in PHP 5 ...

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-95f3-2wqm-398g

около 3 лет назад

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

EPSS: Низкий
oracle-oval логотип

ELSA-2012-1047

почти 13 лет назад

ELSA-2012-1047: php53 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2012-1046

почти 13 лет назад

ELSA-2012-1046: php security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2010-2950

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 6.8
1%
Низкий
больше 14 лет назад
redhat логотип
CVE-2010-2950

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 5.8
1%
Низкий
около 15 лет назад
nvd логотип
CVE-2010-2950

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

CVSS2: 6.8
1%
Низкий
больше 14 лет назад
debian логотип
CVE-2010-2950

Format string vulnerability in stream.c in the phar extension in PHP 5 ...

CVSS2: 6.8
1%
Низкий
больше 14 лет назад
github логотип
GHSA-95f3-2wqm-398g

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not properly handled by the phar_stream_flush function, leading to errors in the php_stream_wrapper_log_error function. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2094.

1%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2012-1047

ELSA-2012-1047: php53 security update (MODERATE)

почти 13 лет назад
oracle-oval логотип
ELSA-2012-1046

ELSA-2012-1046: php security update (MODERATE)

почти 13 лет назад

Уязвимостей на страницу