CVE Vulnerabilities

CVE-2007-1700

Published: Mar 27, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The session extension in PHP 4 before 4.4.5, and PHP 5 before 5.2.1, calculates the reference count for the session variables without considering the internal pointer from the session globals, which allows context-dependent attackers to execute arbitrary code via a crafted string in the session_register after unsetting HTTP_SESSION_VARS and _SESSION, which destroys the session data Hashtable.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp4.0 (including)4.0 (including)
PhpPhp4.0-beta_4_patch1 (including)4.0-beta_4_patch1 (including)
PhpPhp4.0-beta1 (including)4.0-beta1 (including)
PhpPhp4.0-beta2 (including)4.0-beta2 (including)
PhpPhp4.0-beta3 (including)4.0-beta3 (including)
PhpPhp4.0-beta4 (including)4.0-beta4 (including)
PhpPhp4.0-rc1 (including)4.0-rc1 (including)
PhpPhp4.0-rc2 (including)4.0-rc2 (including)
PhpPhp4.0.0 (including)4.0.0 (including)
PhpPhp4.0.1 (including)4.0.1 (including)
PhpPhp4.0.1-patch1 (including)4.0.1-patch1 (including)
PhpPhp4.0.1-patch2 (including)4.0.1-patch2 (including)
PhpPhp4.0.2 (including)4.0.2 (including)
PhpPhp4.0.3 (including)4.0.3 (including)
PhpPhp4.0.3-patch1 (including)4.0.3-patch1 (including)
PhpPhp4.0.4 (including)4.0.4 (including)
PhpPhp4.0.4-patch1 (including)4.0.4-patch1 (including)
PhpPhp4.0.5 (including)4.0.5 (including)
PhpPhp4.0.6 (including)4.0.6 (including)
PhpPhp4.0.7 (including)4.0.7 (including)
PhpPhp4.0.7-rc1 (including)4.0.7-rc1 (including)
PhpPhp4.0.7-rc2 (including)4.0.7-rc2 (including)
PhpPhp4.0.7-rc3 (including)4.0.7-rc3 (including)
PhpPhp4.1.0 (including)4.1.0 (including)
PhpPhp4.1.1 (including)4.1.1 (including)
PhpPhp4.1.2 (including)4.1.2 (including)
PhpPhp4.2 (including)4.2 (including)
PhpPhp4.2.0 (including)4.2.0 (including)
PhpPhp4.2.1 (including)4.2.1 (including)
PhpPhp4.2.2 (including)4.2.2 (including)
PhpPhp4.2.3 (including)4.2.3 (including)
PhpPhp4.3.0 (including)4.3.0 (including)
PhpPhp4.3.1 (including)4.3.1 (including)
PhpPhp4.3.2 (including)4.3.2 (including)
PhpPhp4.3.3 (including)4.3.3 (including)
PhpPhp4.3.4 (including)4.3.4 (including)
PhpPhp4.3.5 (including)4.3.5 (including)
PhpPhp4.3.6 (including)4.3.6 (including)
PhpPhp4.3.7 (including)4.3.7 (including)
PhpPhp4.3.8 (including)4.3.8 (including)
PhpPhp4.3.9 (including)4.3.9 (including)
PhpPhp4.3.10 (including)4.3.10 (including)
PhpPhp4.3.11 (including)4.3.11 (including)
PhpPhp4.4.0 (including)4.4.0 (including)
PhpPhp4.4.1 (including)4.4.1 (including)
PhpPhp4.4.2 (including)4.4.2 (including)
PhpPhp4.4.3 (including)4.4.3 (including)
PhpPhp4.4.4 (including)4.4.4 (including)
PhpPhp5.0-rc1 (including)5.0-rc1 (including)
PhpPhp5.0-rc2 (including)5.0-rc2 (including)
PhpPhp5.0-rc3 (including)5.0-rc3 (including)
PhpPhp5.0.0 (including)5.0.0 (including)
PhpPhp5.0.0-beta1 (including)5.0.0-beta1 (including)
PhpPhp5.0.0-beta2 (including)5.0.0-beta2 (including)
PhpPhp5.0.0-beta3 (including)5.0.0-beta3 (including)
PhpPhp5.0.0-beta4 (including)5.0.0-beta4 (including)
PhpPhp5.0.0-rc1 (including)5.0.0-rc1 (including)
PhpPhp5.0.0-rc2 (including)5.0.0-rc2 (including)
PhpPhp5.0.0-rc3 (including)5.0.0-rc3 (including)
PhpPhp5.0.1 (including)5.0.1 (including)
PhpPhp5.0.2 (including)5.0.2 (including)
PhpPhp5.0.3 (including)5.0.3 (including)
PhpPhp5.0.4 (including)5.0.4 (including)
PhpPhp5.0.5 (including)5.0.5 (including)
PhpPhp5.1.0 (including)5.1.0 (including)
PhpPhp5.1.1 (including)5.1.1 (including)
PhpPhp5.1.2 (including)5.1.2 (including)
PhpPhp5.1.3 (including)5.1.3 (including)
PhpPhp5.1.4 (including)5.1.4 (including)
PhpPhp5.1.5 (including)5.1.5 (including)
PhpPhp5.1.6 (including)5.1.6 (including)
PhpPhp5.2.0 (including)5.2.0 (including)
Php5Ubuntudapper*
Php5Ubuntudevel*
Php5Ubuntuedgy*
Php5Ubuntufeisty*
Php5Ubuntuupstream*

References