7.5
CVSSv2

CVE-2007-1864

Published: 09/05/2007 Updated: 22/05/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the bundled libxmlrpc library in PHP prior to 4.4.7, and 5.x prior to 5.2.2, has unknown impact and remote attack vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

php php

debian debian linux 3.1

debian debian linux 4.0

canonical ubuntu linux 6.06

canonical ubuntu linux 7.04

canonical ubuntu linux 6.10

redhat enterprise linux workstation 5.0

redhat enterprise linux server 5.0

Vendor Advisories

It was discovered that the PHP xmlrpc extension did not correctly check heap memory allocation sizes A remote attacker could send a specially crafted request to a PHP application using xmlrpc and execute arbitrary code as the Apache user (CVE-2007-1864) ...
Several remote vulnerabilities have been discovered in PHP, a server-side, HTML-embedded scripting language, which may lead to the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-1399 Stefan Esser discovered that a buffer overflow in the zip extension allows the exec ...