Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-7328

Multiple integer signedness errors in the gdImageCrop function in ext/gd/gd.c in PHP 5.5.x before 5.5.9 allow remote attackers to cause a denial of service (application crash) or obtain sensitive information via an imagecrop function call with a negative value for the (1) x or (2) y dimension, a different vulnerability than CVE-2013-7226.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.1%
CVSS Severity
CVSS v2 Score 5.8
Products affected by CVE-2013-7328
  • Php » Php » Version: 5.5.0
    cpe:2.3:a:php:php:5.5.0
  • Php » Php » Version: 5.5.1
    cpe:2.3:a:php:php:5.5.1
  • Php » Php » Version: 5.5.2
    cpe:2.3:a:php:php:5.5.2
  • Php » Php » Version: 5.5.3
    cpe:2.3:a:php:php:5.5.3
  • Php » Php » Version: 5.5.4
    cpe:2.3:a:php:php:5.5.4
  • Php » Php » Version: 5.5.5
    cpe:2.3:a:php:php:5.5.5
  • Php » Php » Version: 5.5.6
    cpe:2.3:a:php:php:5.5.6
  • Php » Php » Version: 5.5.7
    cpe:2.3:a:php:php:5.5.7
  • Php » Php » Version: 5.5.8
    cpe:2.3:a:php:php:5.5.8


Contact Us

Shodan ® - All rights reserved