Search:     Advanced search
server monitoring

PHP < 5.2.5 Multiple Vulnerabilities

Article ID: 28181
Last updated: 27 Jan, 2009
Views: 788
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

PHP < 5.2.5 Multiple Vulnerabilities

This script is Copyright (C) 2007-2008 Tenable Network Security, Inc.

FamilyCGI abuses
Plugin ID28181
Bugtraq ID26403
CVE IDCVE-2007-4887
CVE-2007-5898
CVE-2007-5900

Description:

Synopsis :

The remote web server uses a version of PHP that is affected by
multiple flaws.

Description :

According to its banner, the version of PHP installed on the remote
host is older than 5.2.5. Such versions may be affected by various
issues, including but not limited to several buffer overflows.

See also :

http://www.php.net/releases/5_2_5.php

Solution :

Upgrade to PHP version 5.2.5 or later.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
This article was:   Helpful | Not Helpful
Prev   Next
Philboard philboard_admin.ASP Authentication Bypass     CA Host-Based Intrusion Prevention System Server Default...