Php

Php

714 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 22.07%
  • Veröffentlicht 07.08.2016 10:59:21
  • Zuletzt bearbeitet 12.04.2025 10:46:40

php_zip.c in the zip extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 improperly interacts with the unserialize implementation and garbage collection, which allows remote attackers to execute arbitrary code or cause a denial ...

Exploit
  • EPSS 15.94%
  • Veröffentlicht 07.08.2016 10:59:20
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Double free vulnerability in the php_wddx_process_data function in wddx.c in the WDDX extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to cause a denial of service (application crash) or possibly execu...

Exploit
  • EPSS 13.59%
  • Veröffentlicht 07.08.2016 10:59:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

spl_array.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 improperly interacts with the unserialize implementation and garbage collection, which allows remote attackers to execute arbitrary code or cause a denial of service (use-a...

Exploit
  • EPSS 10.05%
  • Veröffentlicht 07.08.2016 10:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the SplFileObject::fread function in spl_directory.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large inte...

  • EPSS 6.08%
  • Veröffentlicht 07.08.2016 10:59:17
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer overflows in mcrypt.c in the mcrypt extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allow remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have uns...

Exploit
  • EPSS 20.99%
  • Veröffentlicht 07.08.2016 10:59:16
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Double free vulnerability in the _php_mb_regex_ereg_replace_exec function in php_mbregex.c in the mbstring extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to execute arbitrary code or cause a denial o...

Exploit
  • EPSS 1.02%
  • Veröffentlicht 07.08.2016 10:59:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

sapi/fpm/fpm/fpm_log.c in PHP before 5.5.31, 5.6.x before 5.6.17, and 7.x before 7.0.2 misinterprets the semantics of the snprintf return value, which allows attackers to obtain sensitive information from process memory or cause a denial of service (...

Exploit
  • EPSS 1.6%
  • Veröffentlicht 07.08.2016 10:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the fread function in ext/standard/file.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large integer in the second argument.

  • EPSS 0.95%
  • Veröffentlicht 07.08.2016 10:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the php_escape_html_entities_ex function in ext/standard/html.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a large outp...

  • EPSS 2.41%
  • Veröffentlicht 07.08.2016 10:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the php_html_entities function in ext/standard/html.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a large output string ...