Количество 5
Количество 5

CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.

CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.
CVE-2015-4642
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.4 ...
GHSA-2g3c-3p8m-g2p4
The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function.

BDU:2016-01363
Уязвимость интерпретатора PHP, позволяющая нарушителю выполнить произвольные команды операционной системы
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 7% Низкий | больше 9 лет назад |
![]() | CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 7% Низкий | больше 9 лет назад |
CVE-2015-4642 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.4 ... | CVSS3: 9.8 | 7% Низкий | больше 9 лет назад | |
GHSA-2g3c-3p8m-g2p4 The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to execute arbitrary OS commands via a crafted string to an application that accepts command-line arguments for a call to the PHP system function. | CVSS3: 9.8 | 7% Низкий | больше 3 лет назад | |
![]() | BDU:2016-01363 Уязвимость интерпретатора PHP, позволяющая нарушителю выполнить произвольные команды операционной системы | CVSS2: 10 | 7% Низкий | больше 9 лет назад |
Уязвимостей на страницу