Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-2225

Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.024
EPSS Ranking 84.5%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2010-2225
  • Php » Php » Version: 5.2.0
    cpe:2.3:a:php:php:5.2.0
  • Php » Php » Version: 5.2.1
    cpe:2.3:a:php:php:5.2.1
  • Php » Php » Version: 5.2.10
    cpe:2.3:a:php:php:5.2.10
  • Php » Php » Version: 5.2.11
    cpe:2.3:a:php:php:5.2.11
  • Php » Php » Version: 5.2.12
    cpe:2.3:a:php:php:5.2.12
  • Php » Php » Version: 5.2.13
    cpe:2.3:a:php:php:5.2.13
  • Php » Php » Version: 5.2.2
    cpe:2.3:a:php:php:5.2.2
  • Php » Php » Version: 5.2.3
    cpe:2.3:a:php:php:5.2.3
  • Php » Php » Version: 5.2.4
    cpe:2.3:a:php:php:5.2.4
  • Php » Php » Version: 5.2.5
    cpe:2.3:a:php:php:5.2.5
  • Php » Php » Version: 5.2.6
    cpe:2.3:a:php:php:5.2.6
  • Php » Php » Version: 5.2.7
    cpe:2.3:a:php:php:5.2.7
  • Php » Php » Version: 5.2.8
    cpe:2.3:a:php:php:5.2.8
  • Php » Php » Version: 5.2.9
    cpe:2.3:a:php:php:5.2.9
  • Php » Php » Version: 5.3.0
    cpe:2.3:a:php:php:5.3.0
  • Php » Php » Version: 5.3.1
    cpe:2.3:a:php:php:5.3.1
  • Php » Php » Version: 5.3.2
    cpe:2.3:a:php:php:5.3.2


Contact Us

Shodan ® - All rights reserved