CVE-2007-4507: Buffer Overflow
Multiple buffer overflows in the phpntuser component for PHP 5.2.3 allow context-dependent attackers to cause a denial of service or execute arbitrary code via long arguments to the (1) ntusergetuserlist, (2) ntusergetuserinfo, (3) ntusergetusergroups, or (4) ntusergetdomaincontroller functions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4507?
CVE-2007-4507 has a high severity level due to its potential to cause denial of service and arbitrary code execution.
How do I fix CVE-2007-4507?
To fix CVE-2007-4507, upgrade to a later version of PHP beyond 5.2.3 where the vulnerabilities are patched.
What components are affected by CVE-2007-4507?
CVE-2007-4507 affects the php_ntuser component specifically in PHP version 5.2.3.
Can CVE-2007-4507 be exploited remotely?
Yes, CVE-2007-4507 can be exploited remotely by attackers sending long arguments to specific functions.
What are the functions involved in CVE-2007-4507?
The functions involved in CVE-2007-4507 are ntuser_getuserlist, ntuser_getuserinfo, ntuser_getusergroups, and ntuser_getdomaincontroller.