Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-0830

The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code via a request containing a large number of variables, related to improper handling of array variables. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-4885.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.334
EPSS Ranking 96.8%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2012-0830
  • Php » Php » Version: 5.3.9
    cpe:2.3:a:php:php:5.3.9


Contact Us

Shodan ® - All rights reserved