Php

Php

739 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.21%
  • Veröffentlicht 13.02.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:31

Buffer underflow in PHP before 5.2.1 allows attackers to cause a denial of service via unspecified vectors involving the sapi_header_op function.

  • EPSS 11.75%
  • Veröffentlicht 13.02.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:31

The WDDX deserializer in the wddx extension in PHP 5 before 5.2.1 and PHP 4 before 4.4.5 does not properly initialize the key_length variable for a numerical key, which allows context-dependent attackers to read stack memory via a wddxPacket element ...

  • EPSS 3.25%
  • Veröffentlicht 13.02.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:32

Multiple format string vulnerabilities in PHP before 5.2.1 might allow attackers to execute arbitrary code via format string specifiers to (1) all of the *print functions on 64-bit systems, and (2) the odbc_result_all function.

  • EPSS 3.27%
  • Veröffentlicht 13.02.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:32

Unspecified vulnerability in PHP before 5.2.1 allows attackers to "clobber" certain super-global variables via unspecified vectors.

Exploit
  • EPSS 5.27%
  • Veröffentlicht 13.02.2007 23:28:00
  • Zuletzt bearbeitet 16.06.2026 22:36:32

Off-by-one error in the str_ireplace function in PHP 5.2.1 might allow context-dependent attackers to cause a denial of service (crash).

  • EPSS 11.69%
  • Veröffentlicht 30.01.2007 17:28:00
  • Zuletzt bearbeitet 16.06.2026 22:35:36

Buffer overflow in the gdImageStringFTEx function in gdft.c in GD Graphics Library 2.0.33 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted string with a JIS encoded...

Exploit
  • EPSS 1.13%
  • Veröffentlicht 10.12.2006 20:28:00
  • Zuletzt bearbeitet 16.06.2026 22:33:00

PHP 5.2.0 and 4.4 allows local users to bypass safe_mode and open_basedir restrictions via a malicious path and a null byte before a ";" in a session_save_path argument, followed by an allowed path, which causes a parsing inconsistency in which PHP v...

  • EPSS 0.34%
  • Veröffentlicht 04.11.2006 01:07:00
  • Zuletzt bearbeitet 16.06.2026 22:31:41

Unspecified vulnerabilities in PHP, probably before 5.2.0, allow local users to bypass open_basedir restrictions and perform unspecified actions via unspecified vectors involving the (1) chdir and (2) tempnam functions. NOTE: the tempnam vector migh...

  • EPSS 7.71%
  • Veröffentlicht 04.11.2006 00:07:00
  • Zuletzt bearbeitet 16.06.2026 22:31:15

Buffer overflow in PHP before 5.2.0 allows remote attackers to execute arbitrary code via crafted UTF-8 inputs to the (1) htmlentities or (2) htmlspecialchars functions.

  • EPSS 15.39%
  • Veröffentlicht 10.10.2006 04:06:00
  • Zuletzt bearbeitet 16.06.2026 22:29:50

Integer overflow in PHP 5 up to 5.1.6 and 4 before 4.3.0 allows remote attackers to execute arbitrary code via an argument to the unserialize PHP function with a large value for the number of array elements, which triggers the overflow in the Zend En...