5
CVSSv2

CVE-2010-2100

Published: 27/05/2010 Updated: 23/08/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The (1) htmlentities, (2) htmlspecialchars, (3) str_getcsv, (4) http_build_query, (5) strpbrk, and (6) strtr functions in PHP 5.2 up to and including 5.2.13 and 5.3 up to and including 5.3.2 allow context-dependent malicious users to obtain sensitive information (memory contents) by causing a userspace interruption of an internal function, related to the call time pass by reference feature.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 5.2.1

php php 5.2.2

php php 5.2.3

php php 5.2.10

php php 5.2.11

php php 5.2.0

php php 5.2.8

php php 5.2.9

php php 5.3.2

php php 5.2.4

php php 5.2.5

php php 5.3.0

php php 5.2.12

php php 5.2.6

php php 5.2.7

php php 5.2.13

php php 5.3.1