[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2007-1824Date: (C)2007-04-02   (M)2023-12-22


Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 5.1
Exploit Score: 4.9
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: HIGH
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
BID-23237
SECUNIA-25056
SECUNIA-25057
SECUNIA-25062
DSA-1283
SUSE-SA:2007:032
USN-455-1
http://www.php-security.org/MOPB/MOPB-42-2007.html
php-phpstreamfiltercreate-bo(33729)

CPE    14
cpe:/a:php:php:5.0.0
cpe:/a:php:php:5.0.5
cpe:/a:php:php:5.1.4
cpe:/a:php:php:5.1.5
...

© SecPod Technologies