Vulnerability Details CVE-2018-5712
An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.892
EPSS Ranking 99.5%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3