Exposição de PHP

Programming languages
829
score de exposição
4.550.434
sites usam
2
em exploração
43
críticos

CVEs

1.079 resultados
CVE-2021-21708HIGHUAF due to php_filter_float() failingEPSS 3.0%CVE-2020-7071MEDIUMFILTER_VALIDATE_URL accepts URLs with invalid userinfoEPSS 3.0%CVE-2024-45293HIGHXML External Entity Reference (XXE) in PHPSpreadsheet's XLSX readerEPSS 2.9%CVE-2013-4462WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerabilityEPSS 2.8%CVE-2020-7066MEDIUMget_headers() silently truncates after a null byteEPSS 2.8%CVE-2020-4043HIGHPhar unserialization vulnerability in phpMusselEPSS 2.6%CVE-2023-3187MEDIUMPHPGurukul Teachers Record Management System Profile Picture changeimage.php unrestricted uploadEPSS 2.6%CVE-2023-4111MEDIUMPHP Jabbers Bus Reservation System index.php cross site scriptingEPSS 2.5%CVE-2025-2473MEDIUMPHPGurukul Company Visitor Management System Sign In index.php sql injectionEPSS 2.4%CVE-2020-13567HIGHMultiple SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker canEPSS 2.3%CVE-2024-8929MEDIUMLeak partial content of the heap through heap buffer over-read in mysqlndEPSS 2.3%CVE-2021-3603HIGHInclusion of Functionality from Untrusted Control Sphere in PHPMailer/PHPMailerEPSS 2.3%CVE-2021-21408HIGHAccess to restricted PHP code by dynamic static class access in smartyEPSS 2.2%CVE-2022-31630MEDIUMOOB read due to insufficient input validation in imageloadfont()EPSS 2.2%CVE-2022-31631CRITICALPDO::quote() may return unquoted stringEPSS 2.2%CVE-2024-11236CRITICALInteger overflow in the firebird and dblib quoters causing OOB writesEPSS 2.1%CVE-2020-5558CuteNews 2.0.1 allows remote authenticated attackers to execute arbitrary PHP code via unspecified vectors.EPSS 2.1%CVE-2020-7069MEDIUMWrong ciphertext/tag in AES-CCM encryption for a 12 bytes IVEPSS 2.0%CVE-2019-11037MEDIUMOut of bounds memory write in PHP Imagick extensionEPSS 2.0%CVE-2021-21705MEDIUMIncorrect URL validation in FILTER_VALIDATE_URLEPSS 1.9%

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →