Vulnerabilities (CVE)

Filtered by vendor Php Subscribe
Filtered by product Com Extensions
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1382 2 Microsoft, Php 2 All Windows, Com Extensions 2024-02-04 6.8 MEDIUM N/A
The PHP COM extensions for PHP on Windows systems allow context-dependent attackers to execute arbitrary code via a WScript.Shell COM object, as demonstrated by using the Run method of this object to execute cmd.exe, which bypasses PHP's safe mode.