Stefan Esser
61 exploits
Active since Dec 2002
PHP <4.4.7, <5.2.2 - Use After Free
PHP 5.0.0-5.2.13 and 5.3.0-5.3.2 - Remote Code Execution via Hash Update File Resource Manipulation
PHP 5.2.0-5.2.1 - Remote Code Execution via Session Identifier Double Free
PHP 5.2.0-5.2.1 - Remote Code Execution via Long zip:// URL
CVSS 9.8
PHP 4.0.0-4.4.6 and 5.0.0-5.2.1 - Remote Code Execution via Userspace Error Handler
PHP <4.4.6 & <5.2.1 - Code Injection
PHP 4.0.0-4.4.4 - Remote Code Execution via Session Data Deserialization
PHP <4.4.5, <5.2.1 - Memory Corruption
PHP < 4.4.4 - Remote Code Execution via Long String to unserialize Function
PHP 4.4.5-4.4.6 - Use-After-Free in Unserializer
NetBSD/FreeBSD - Privilege Escalation