Stanislav Malyshev
11 exploits
Active since May 2013
PHP < 5.4.16 RC1 and 5.5.0 < RC2 - Denial of Service via Crafted Function Definition
CVSS 7.5
PHP < 5.4.37 - Use-After-Free via Unserialize Duplicate Numerical Keys
PHP < 7.0.6 - Integer Overflow in ZipArchive getFromIndex and getFromName
CVSS 9.8
PHP < 5.6.25 and 7.x < 7.0.10 - Denial of Service via Malformed wddxPacket XML Document
CVSS 7.5
PHP < 5.6.25 and 7.x < 7.0.10 - Denial of Service via WDDX Deserialization NULL Pointer Dereference
CVSS 7.5
PHP < 5.6.33, 7.0.x < 7.0.28, 7.1.x <= 7.1.14, 7.2.x <= 7.2.2 - Stack-Based Buffer Under-Read in HTTP Response Parsing
CVSS 9.8
PHP < 7.0.12 - Remote Code Execution via SplObjectStorage Unserialize
CVSS 9.8
PHP < 5.6.28 and 7.x < 7.0.13 - Denial of Service via WDDX Packet Deserialization
CVSS 7.5
PHP < 5.6.29 and 7.x < 7.0.14 - Out-of-bounds Read in WDDX Boolean Element Parsing
CVSS 9.8
PHP 7.0.0-7.0.14 - Remote Code Execution via Crafted Serialized Data
CVSS 9.8
PHP <5.6.38, <7.0.32, <7.1.22, <7.2.10 - XSS
CVSS 6.1