PHPPHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to e…

First published (updated )

PHPPHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are exe…

First published (updated )

PHPphp.cgi allows attackers to read any file on the system.

First published (updated )

PHPBuffer Overflow

First published (updated )

PHPInteger Overflow

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PHPInput Validation

First published (updated )

PHPThe safe mode checks in PHP 4.x to 4.3.9 and PHP 5.x to 5.0.2 truncate the file path before passing …

First published (updated )

PHPInteger Overflow

First published (updated )

PHPPHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver,…

First published (updated )

PHPBuffer Overflow

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PHPBuffer Overflow

First published (updated )

PHPPHP before 4.3.7 on Win32 platforms does not properly filter all shell metacharacters, which allows …

First published (updated )

PHPFixed bug (Format String Vulnerability in Class Name Error Message). (CVE-2015-8617)

First published (updated )

PHPCode Injection, Integer Overflow

First published (updated )

PHPThe stripos function in PHP before 5.1.5 has unknown impact and attack vectors related to an out-of-…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PHPBuffer Overflow

First published (updated )

PHPUnspecified vulnerability in the _php_stream_scandir function in the stream implementation in PHP be…

First published (updated )

PHPBuffer Overflow

First published (updated )

PHPPHP before 5.2.12 does not properly handle session data, which has unspecified impact and attack vec…

First published (updated )

PHPBuffer Overflow

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PHPInteger Overflow

First published (updated )

PHPUnspecified vulnerability in PHP before 5.2.1 allows attackers to "clobber" certain super-global var…

First published (updated )

Oracle Communications Policy ManagementBuffer Overflow

First published (updated )

PHPThe fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-…

First published (updated )

PHPDouble Free

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PHPThe SoapClient implementation in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allo…

First published (updated )

PHPThe exception::getTraceAsString function in Zend/zend_exceptions.c in PHP before 5.4.40, 5.5.x befor…

First published (updated )

Red Hat Enterprise Linux HPC NodePHP before 5.6.7 might allow remote attackers to cause a denial of service (application crash) or po…

First published (updated )

PHPThe __PHP_Incomplete_Class function in ext/standard/incomplete_class.c in PHP before 5.4.40, 5.5.x b…

First published (updated )

PHPThe SoapFault::__toString method in ext/soap/soap.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203