CVE-2022-27158: Critical severity php pear vulnerability
Published Apr 15, 2022
·Updated
pearweb < 1.32 suffers from Deserialization of Untrusted Data.
Affected Software
1 affected component
PHP pearweb<1.32.0
Remediation
Event History
Apr 15, 2022
CVE Published
via MITRE·06:03 PM
Data Sourced
via MITRE·06:03 PM
Description
Frequently Asked Questions
1
What is CVE-2022-27158?
CVE-2022-27158 is a vulnerability in pearweb < 1.32 that allows for the deserialization of untrusted data.
2
What is the severity of CVE-2022-27158?
CVE-2022-27158 has a severity rating of critical with a value of 9.8.
3
How does CVE-2022-27158 affect Php Pearweb?
CVE-2022-27158 affects Php Pearweb versions up to and excluding 1.32.0.
4
How can I fix CVE-2022-27158?
To fix CVE-2022-27158, update Php Pearweb to version 1.32.0 or later.
5
Where can I find more information about CVE-2022-27158?
More information about CVE-2022-27158 can be found at the following link: https://github.com/pear/pearweb/commit/6447c174a6b4bd76d28ecca8543cbd24bf394f99