Логотип exploitDog
bind:"CVE-2025-1220"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-1220"

Количество 9

Количество 9

ubuntu логотип

CVE-2025-1220

23 дня назад

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2025-1220

23 дня назад

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2025-1220

23 дня назад

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2025-1220

23 дня назад

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before ...

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-3cr5-j632-f35r

около 1 месяца назад

Null byte termination in hostnames

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02474-1

13 дней назад

Security update for php8

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02473-1

13 дней назад

Security update for php7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02463-1

14 дней назад

Security update for php8

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02462-1

14 дней назад

Security update for php8

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-1220

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
0%
Низкий
23 дня назад
redhat логотип
CVE-2025-1220

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
0%
Низкий
23 дня назад
nvd логотип
CVE-2025-1220

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.

CVSS3: 3.7
0%
Низкий
23 дня назад
debian логотип
CVE-2025-1220

In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before ...

CVSS3: 3.7
0%
Низкий
23 дня назад
github логотип
GHSA-3cr5-j632-f35r

Null byte termination in hostnames

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02474-1

Security update for php8

13 дней назад
suse-cvrf логотип
SUSE-SU-2025:02473-1

Security update for php7

13 дней назад
suse-cvrf логотип
SUSE-SU-2025:02463-1

Security update for php8

14 дней назад
suse-cvrf логотип
SUSE-SU-2025:02462-1

Security update for php8

14 дней назад

Уязвимостей на страницу