| Vulnerability Name: | CVE-2020-7067 (CCN-180957) | ||||||||||||
| Assigned: | 2020-04-10 | ||||||||||||
| Published: | 2020-04-10 | ||||||||||||
| Updated: | 2022-05-16 | ||||||||||||
| Summary: | In PHP versions 7.2.x below 7.2.30, 7.3.x below 7.3.17 and 7.4.x below 7.4.5, if PHP is compiled with EBCDIC support (uncommon), urldecode() function can be made to access locations past the allocated memory, due to erroneously using signed numbers as array indexes. | ||||||||||||
| CVSS v3 Severity: | 7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N) 6.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C)
3.9 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C)
| ||||||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||||||
| Vulnerability Type: | CWE-125 | ||||||||||||
| Vulnerability Consequences: | Obtain Information | ||||||||||||
| References: | Source: MITRE Type: CNA CVE-2020-7067 Source: CCN Type: PHP Sec Bug #79465 OOB Read in urldecode() Source: CONFIRM Type: Exploit, Vendor Advisory https://bugs.php.net/bug.php?id=79465 Source: XF Type: UNKNOWN php-cve20207067-info-disc(180957) Source: CONFIRM Type: Third Party Advisory https://security.netapp.com/advisory/ntap-20200504-0001/ Source: DEBIAN Type: Third Party Advisory DSA-4717 Source: DEBIAN Type: Third Party Advisory DSA-4719 Source: CCN Type: IBM Security Bulletin 6250489 (API Connect) IBM API Connect V5 is vulnerable to sensitive information leak (PHP CVE-2020-7067) Source: MISC Type: Not Applicable, Third Party Advisory https://www.oracle.com/security-alerts/cpuApr2021.html Source: MISC Type: Third Party Advisory https://www.oracle.com/security-alerts/cpuoct2020.html Source: CCN Type: PHP Web site PHP Source: CONFIRM Type: Patch, Third Party Advisory https://www.tenable.com/security/tns-2021-14 Source: CCN Type: WhiteSource Vulnerability Database CVE-2020-7067 | ||||||||||||
| Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration 3: Configuration 4: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
| BACK | |||||||||||||