CVE-2007-1412

PHP 4.4.6 - Info Disclosure

Title source: llm

Description

The cpdf_open function in the ClibPDF (cpdf) extension in PHP 4.4.6 allows context-dependent attackers to obtain sensitive information (script source code) via a long string in the second argument.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phplocalmultiple
https://www.exploit-db.com/exploits/3442

Scores

EPSS 0.0433
EPSS Percentile 89.0%

Details

Status published
Products (1)
php/php 4.4.6
Published Mar 12, 2007
Tracked Since Feb 18, 2026