The substr_count function in PHP 5.2.1 and earlier allows context-dependent attackers to obtain sensitive information via unspecified vectors, a different affected function than CVE-2007-1375.
References
Link | Resource |
---|---|
http://osvdb.org/34730 | Broken Link |
http://secunia.com/advisories/26895 | Third Party Advisory |
http://us2.php.net/releases/5_2_2.php | Third Party Advisory |
http://www.attrition.org/pipermail/vim/2007-May/001621.html | Third Party Advisory |
http://www.mandriva.com/security/advisories?name=MDKSA-2007:187 | Third Party Advisory |
http://www.novell.com/linux/security/advisories/2007_15_sr.html | Third Party Advisory |
http://www.securityfocus.com/bid/24012 | Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2007-05-17 20:30
Updated : 2024-02-04 17:13
NVD link : CVE-2007-2748
Mitre link : CVE-2007-2748
CVE.ORG link : CVE-2007-2748
JSON object : View
Products Affected
php
- php
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor