Php

Php

739 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.92%
  • Veröffentlicht 25.11.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:05

An issue was discovered in SDCMS 1.6 with PHP 5.x. app/admin/controller/themecontroller.php uses a check_bad function in an attempt to block certain PHP functions such as eval, but does not prevent use of preg_replace 'e' calls, allowing users to exe...

Exploit
  • EPSS 95.23%
  • Veröffentlicht 25.11.2018 10:29:00
  • Zuletzt bearbeitet 21.11.2024 03:58:04

University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means of the imap_rimap function in c-client/imap4r1.c and the tcp_aopen function in osdep/unix/tcp_unix.c) without pre...

Exploit
  • EPSS 4.33%
  • Veröffentlicht 20.11.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:57:51

ext/standard/var.c in PHP 5.x through 7.1.24 on Windows allows attackers to cause a denial of service (NULL pointer dereference and application crash) because com and com_safearray_proxy return NULL in com_properties_get in ext/com_dotnet/com_handler...

Exploit
  • EPSS 4.58%
  • Veröffentlicht 20.11.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:57:51

ext/standard/var_unserializer.c in PHP 5.x through 7.1.24 allows attackers to cause a denial of service (application crash) via an unserialize call for the com, dotnet, or variant class.

Exploit
  • EPSS 4.1%
  • Veröffentlicht 16.09.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:50

The Apache2 component in PHP before 5.6.38, 7.0.x before 7.0.32, 7.1.x before 7.1.22, and 7.2.x before 7.2.10 allows XSS via the body of a "Transfer-Encoding: chunked" request, because the bucket brigade is mishandled in the php_handler function in s...

Exploit
  • EPSS 5.14%
  • Veröffentlicht 07.08.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:50:22

An issue was discovered in ext/standard/link_win32.c in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. The linkinfo function on Windows doesn't implement the open_basedir check. This could be abused to find files...

Exploit
  • EPSS 8.98%
  • Veröffentlicht 03.08.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:50:00

An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. An Integer Overflow leads to a heap-based buffer over-read in exif_thumbnail_extract of exif.c.

Exploit
  • EPSS 3.19%
  • Veröffentlicht 03.08.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:50:00

An issue was discovered in PHP 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. Inappropriately parsing an HTTP response leads to a segmentation fault because http_header_value in ext/standard/http_fopen_wrapper.c can be a NULL value...

  • EPSS 4.31%
  • Veröffentlicht 02.08.2018 19:29:00
  • Zuletzt bearbeitet 21.11.2024 03:49:55

exif_process_IFD_in_MAKERNOTE in ext/exif/exif.c in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG...

Exploit
  • EPSS 2.95%
  • Veröffentlicht 02.08.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:35:21

PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a crafted preg_replace call.