Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-1900

CRLF injection vulnerability in the FILTER_VALIDATE_EMAIL filter in ext/filter in PHP 5.2.0 and 5.2.1 allows context-dependent attackers to inject arbitrary e-mail headers via an e-mail address with a '\n' character, which causes a regular expression to ignore the subsequent part of the address string.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.4%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2007-1900
  • Php » Php » Version: 5.2.0
    cpe:2.3:a:php:php:5.2.0
  • Php » Php » Version: 5.2.1
    cpe:2.3:a:php:php:5.2.1


Contact Us

Shodan ® - All rights reserved