6.8
CVSSv2

CVE-2007-1884

Published: 06/04/2007 Updated: 30/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer signedness errors in the printf function family in PHP 4 prior to 4.4.5 and PHP 5 prior to 5.2.1 on 64 bit machines allow context-dependent malicious users to execute arbitrary code via (1) certain negative argument numbers that arise in the php_formatted_print function because of 64 to 32 bit truncation, and bypass a check for the maximum allowable value; and (2) a width and precision of -1, which make it possible for the php_sprintf_appendstring function to place an internal buffer at an arbitrary memory location.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 4.0.2

php php 4.0.3

php php 4.0.7

php php 4.0

php php 4.1.0

php php 4.2

php php 4.3.0

php php 4.3.6

php php 4.3.7

php php 4.4.4

php php 4.0.1

php php 4.0.6

php php 4.2.2

php php 4.2.3

php php 4.3.3

php php 4.3.4

php php 4.3.5

php php 4.4.2

php php 4.4.3

php php 4.0.0

php php 4.0.4

php php 4.0.5

php php 4.2.0

php php 4.2.1

php php 4.3.11

php php 4.3.2

php php 4.4.0

php php 4.4.1

php php 4.1.1

php php 4.1.2

php php 4.3.1

php php 4.3.10

php php 4.3.8

php php 4.3.9

php php 5.0.0

php php 5.0.1

php php 5.0.2

php php 5.0

php php 5.0.5

php php 5.1.3

php php 5.1.4

php php 5.1.5

php php 5.1.6

php php 5.1.0

php php 5.2.0

php php 5.0.3

php php 5.0.4

php php 5.1.1

php php 5.1.2