php

756 tracked vulnerabilities.

CVE-2007-1399 CRITICAL
PHP 5.2.0-5.2.1 - Remote Code Execution via Long zip:// URL
Mar 10, 2007
CVSS 9.8
EPSS 0.39
CVE-2007-1401
PHP < 5.0.0 - Buffer Overflow in CrackLib crack_opendict Function
Mar 10, 2007
EPSS 0.00
CVE-2007-1411
PHP < 4.4.6 - Buffer Overflow via mssql_connect and mssql_pconnect Functions
Mar 10, 2007
EPSS 0.15
CVE-2007-1375
PHP < 5.2.1 - Memory Read via substr_compare Length Argument
Mar 10, 2007
EPSS 0.17
CVE-2007-1376
PHP <4.4.5, <5.2.1 - Memory Corruption
Mar 10, 2007
EPSS 0.15
CVE-2007-1378
PHP - Arbitrary Memory Write via Ovrimos Extension ovrimos_longreadlen Function
Mar 10, 2007
EPSS 0.01
CVE-2007-1379
PHP - Use-After-Free in Ovrimos Extension
Mar 10, 2007
EPSS 0.01
CVE-2007-1380
PHP <4.4.5, <5.2.1 - Info Disclosure
Mar 10, 2007
EPSS 0.14
CVE-2007-1381
PHP - Buffer Overflow in wddx_deserialize via Malformed STRING Element
Mar 10, 2007
EPSS 0.05
CVE-2007-1382
PHP COM Extensions - Remote Code Execution via WScript.Shell COM Object
Mar 10, 2007
EPSS 0.00
CVE-2007-1383 CRITICAL
PHP 4 - Remote Code Execution via 16-bit Reference Counter Overflow
Mar 10, 2007
CVSS 9.8
EPSS 0.03
CVE-2007-1285 HIGH
PHP 4.x < 4.4.7 and 5.x < 5.2.2 - Denial of Service via Deeply Nested Arrays
Mar 06, 2007
CVSS 7.5
EPSS 0.07
CVE-2007-1286
PHP < 4.4.4 - Remote Code Execution via Long String to unserialize Function
Mar 06, 2007
EPSS 0.86
CVE-2007-1287
PHP 4.4.3-4.4.6 - Cross-Site Scripting via phpinfo GET POST or COOKIE Array Values
Mar 06, 2007
EPSS 0.18
CVE-2007-0988
PHP 4.0.0-4.4.4 and 5.0.0-5.2.0 - Denial of Service via Unserialize Integer Overflow
Feb 20, 2007
EPSS 0.02
CVE-2007-0905
PHP < 5.2.1 - Safe Mode and Open Basedir Bypass via Session Extension
Feb 13, 2007
EPSS 0.02
CVE-2007-0906
PHP - Multiple Buffer Overflows in Session, ZIP, IMAP, SQLite Extensions and Stream Filters
Feb 13, 2007
EPSS 0.02
CVE-2007-0907
PHP - Denial of Service via sapi_header_op Buffer Underflow
Feb 13, 2007
EPSS 0.03
CVE-2007-0908
PHP <5.2.1 & <4.4.5 - Info Disclosure
Feb 13, 2007
EPSS 0.17
CVE-2007-0909
PHP - Format String Vulnerability via Print Functions and odbc_result_all
Feb 13, 2007
EPSS 0.04
CVE-2007-0910
PHP < 5.2.1 - Super-Global Variable Clobbering
Feb 13, 2007
EPSS 0.08
CVE-2007-0911
PHP 5.2.1 - Denial of Service via Off-by-One Error in str_ireplace
Feb 13, 2007
EPSS 0.12
CVE-2007-0455
GD Graphics Library < 2.0.33 - Buffer Overflow via JIS Encoded Font String
Jan 30, 2007
EPSS 0.05
CVE-2006-7243
PHP < 5.3.4 - Path Traversal via Null Byte Injection
Jan 18, 2011
EPSS 0.02
CVE-2006-7204
PHP < 4.4.4 - Arbitrary File Read and Directory Listing via imap_body
May 22, 2007
EPSS 0.00