PT-2007-2846 · Php · Php

Published

2007-03-14

·

Updated

2008-09-05

·

CVE-2007-1452

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions PHP versions prior to 5.2.0
Description The issue concerns the FDF support in PHP, which does not implement input filtering hooks, allowing remote attackers to bypass website filters via an application/vnd.fdf formatted POST.
Recommendations For versions prior to 5.2.0, update to a version that implements the necessary input filtering hooks to prevent bypassing of web site filters.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1452

Affected Products

Php