Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-1711

Double free vulnerability in the unserializer in PHP 4.4.5 and 4.4.6 allows context-dependent attackers to execute arbitrary code by overwriting variables pointing to (1) the GLOBALS array or (2) the session data in _SESSION. NOTE: this issue was introduced when attempting to patch CVE-2007-1701 (MOPB-31-2007).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.209
EPSS Ranking 95.4%
CVSS Severity
CVSS v2 Score 6.8
References
Products affected by CVE-2007-1711
  • Php » Php » Version: 4.4.5
    cpe:2.3:a:php:php:4.4.5
  • Php » Php » Version: 4.4.6
    cpe:2.3:a:php:php:4.4.6


Contact Us

Shodan ® - All rights reserved