Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2003-0166

Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via negative arguments to functions such as (1) socket_recv, (2) socket_recvfrom, and possibly other functions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.364
EPSS Ranking 97.0%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0166
  • Php » Php » Version: 4.0
    cpe:2.3:a:php:php:4.0
  • Php » Php » Version: 4.0.1
    cpe:2.3:a:php:php:4.0.1
  • Php » Php » Version: 4.0.2
    cpe:2.3:a:php:php:4.0.2
  • Php » Php » Version: 4.0.3
    cpe:2.3:a:php:php:4.0.3
  • Php » Php » Version: 4.0.4
    cpe:2.3:a:php:php:4.0.4
  • Php » Php » Version: 4.0.5
    cpe:2.3:a:php:php:4.0.5
  • Php » Php » Version: 4.0.6
    cpe:2.3:a:php:php:4.0.6
  • Php » Php » Version: 4.0.7
    cpe:2.3:a:php:php:4.0.7
  • Php » Php » Version: 4.1.0
    cpe:2.3:a:php:php:4.1.0
  • Php » Php » Version: 4.1.1
    cpe:2.3:a:php:php:4.1.1
  • Php » Php » Version: 4.1.2
    cpe:2.3:a:php:php:4.1.2
  • Php » Php » Version: 4.2.0
    cpe:2.3:a:php:php:4.2.0
  • Php » Php » Version: 4.2.1
    cpe:2.3:a:php:php:4.2.1
  • Php » Php » Version: 4.2.2
    cpe:2.3:a:php:php:4.2.2
  • Php » Php » Version: 4.2.3
    cpe:2.3:a:php:php:4.2.3
  • Php » Php » Version: 4.3.0
    cpe:2.3:a:php:php:4.3.0
  • Php » Php » Version: 4.3.1
    cpe:2.3:a:php:php:4.3.1


Contact Us

Shodan ® - All rights reserved