Vulnerability Name: | CVE-2007-3806 (CCN-35437) | ||||||||||||||||||||||||||||
Assigned: | 2007-07-14 | ||||||||||||||||||||||||||||
Published: | 2007-07-14 | ||||||||||||||||||||||||||||
Updated: | 2017-09-29 | ||||||||||||||||||||||||||||
Summary: | The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to memory corruption or an invalid read on win32 platforms, and possibly related to lack of initialization for a glob structure. | ||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||||||||||||||||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.6 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:F/RL:OF/RC:C)
6.4 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C)
| ||||||||||||||||||||||||||||
Vulnerability Type: | CWE-399 CWE-20 | ||||||||||||||||||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2007-3806 Source: MISC Type: UNKNOWN http://cvs.php.net/viewvc.cgi/php-src/ext/standard/dir.c?r1=1.166&r2=1.167 Source: CCN Type: PHP CVS Repository initialize glob struct Source: MISC Type: UNKNOWN http://cvs.php.net/viewvc.cgi/php-src/ext/standard/dir.c?view=log Source: OSVDB Type: UNKNOWN 36085 Source: CCN Type: SA26085 PHP "glob()" Code Execution Vulnerability Source: SECUNIA Type: Vendor Advisory 26085 Source: CCN Type: SA26642 PHP Multiple Vulnerabilities Source: SECUNIA Type: Vendor Advisory 26642 Source: SECUNIA Type: Vendor Advisory 27102 Source: SECUNIA Type: Vendor Advisory 30158 Source: SECUNIA Type: Vendor Advisory 30288 Source: DEBIAN Type: UNKNOWN DSA-1572 Source: DEBIAN Type: UNKNOWN DSA-1578 Source: DEBIAN Type: DSA-1572 php5 -- several vulnerabilities Source: DEBIAN Type: DSA-1578 php4 -- several vulnerabilities Source: EXPLOIT-DB Type: UNKNOWN 4181 Source: CCN Type: GLSA-200710-02 PHP: Multiple vulnerabilities Source: GENTOO Type: UNKNOWN GLSA-200710-02 Source: CCN Type: OSVDB ID: 36085 PHP glob() Function flags Parameter Memory Corruption Source: CCN Type: PHP Web site PHP: Hypertext Preprocessor Source: CONFIRM Type: UNKNOWN http://www.php.net/ChangeLog-5.php#5.2.4 Source: CONFIRM Type: UNKNOWN http://www.php.net/releases/5_2_4.php Source: BID Type: UNKNOWN 24922 Source: CCN Type: BID-24922 PHP Glob() Function Arbitrary Code Execution Vulnerability Source: BID Type: UNKNOWN 25498 Source: CCN Type: BID-25498 PHP 5.2.3 and Prior Versions Multiple Vulnerabilities Source: VUPEN Type: Vendor Advisory ADV-2007-2547 Source: XF Type: UNKNOWN php-glob-dos(35437) Source: XF Type: UNKNOWN php-glob-security-bypass(35437) | ||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||
BACK |