9.3
CVSSv2

CVE-2007-2844

Published: 24/05/2007 Updated: 30/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

PHP 4.x and 5.x prior to 5.2.1, when running on multi-threaded systems, does not ensure thread safety for libc crypt function calls using protection schemes such as a mutex, which creates race conditions that allow remote malicious users to overwrite internal program memory and gain system access.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 4.0.3

php php 4.0.7

php php 4.0

php php 4.1.0

php php 4.3.1

php php 4.3.10

php php 4.3.7

php php 4.3.8

php php 4.4.5

php php 4.4.6

php php 5.0.0

php php 5.0.1

php php 4.0.0

php php 4.0.1

php php 4.0.5

php php 4.0.6

php php 4.2.1

php php 4.2.2

php php 4.3.3

php php 4.3.4

php php 4.4.1

php php 4.4.2

php php 4.0.2

php php 5.0

php php 5.1.0

php php 5.2.0

php php 4.2.3

php php 4.3.0

php php 4.3.5

php php 4.3.6

php php 4.4.3

php php 4.4.4

php php 5.1.4

php php 5.1.5

php php 5.1.6

php php 5.0.4

php php 5.0.5

php php 5.1.2

php php 5.1.3

php php 4.0.4

php php 4.1.1

php php 4.1.2

php php 4.2.0

php php 4.3.11

php php 4.3.2

php php 4.3.9

php php 4.4.0

php php 5.0.2

php php 5.0.3

php php 5.1.1