Php

Php

711 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.61%
  • Veröffentlicht 09.11.2010 01:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

fopen_wrappers.c in PHP 5.3.x through 5.3.3 might allow remote attackers to bypass open_basedir restrictions via vectors related to the length of a filename.

Exploit
  • EPSS 6.08%
  • Veröffentlicht 09.11.2010 01:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

Exploit
  • EPSS 3.73%
  • Veröffentlicht 25.10.2010 20:01:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack consumption vulnerability in the filter_var function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3, when FILTER_VALIDATE_EMAIL mode is used, allows remote attackers to cause a denial of service (memory consumption and application crash) v...

Exploit
  • EPSS 0.67%
  • Veröffentlicht 28.09.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Format string vulnerability in stream.c in the phar extension in PHP 5.3.x through 5.3.3 allows context-dependent attackers to obtain sensitive information (memory contents) and possibly execute arbitrary code via a crafted phar:// URI that is not pr...

  • EPSS 0.48%
  • Veröffentlicht 20.08.2010 22:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The strrchr function in PHP 5.2 before 5.2.14 allows context-dependent attackers to obtain sensitive information (memory contents) or trigger memory corruption by causing a userspace interruption of an internal function or handler.

  • EPSS 5.71%
  • Veröffentlicht 20.08.2010 22:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The var_export function in PHP 5.2 before 5.2.14 and 5.3 before 5.3.3 flushes the output buffer to the user when certain fatal errors occur, even if display_errors is off, which allows remote attackers to obtain sensitive information by causing the a...

  • EPSS 0.84%
  • Veröffentlicht 20.08.2010 20:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

mysqlnd_wireprotocol.c in the Mysqlnd extension in PHP 5.3 through 5.3.2 allows remote attackers to (1) read sensitive memory via a modified length value, which is not properly handled by the php_mysqlnd_ok_read function; or (2) trigger a heap-based ...

  • EPSS 0.5%
  • Veröffentlicht 20.08.2010 20:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The php_mysqlnd_read_error_from_line function in the Mysqlnd extension in PHP 5.3 through 5.3.2 does not properly calculate a buffer length, which allows context-dependent attackers to trigger a heap-based buffer overflow via crafted inputs that caus...

  • EPSS 1.09%
  • Veröffentlicht 20.08.2010 20:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in the php_mysqlnd_auth_write function in the Mysqlnd extension in PHP 5.3 through 5.3.2 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) username o...

Exploit
  • EPSS 0.5%
  • Veröffentlicht 20.08.2010 20:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The default session serializer in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 does not properly handle the PS_UNDEF_MARKER marker, which allows context-dependent attackers to modify arbitrary session variables via a crafted session variable name.