CVE Vulnerabilities

CVE-2007-5898

Published: Nov 20, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp*5.2.4 (including)
Red Hat Enterprise Linux 2.1RedHatphp-0:4.1.2-2.20*
Red Hat Enterprise Linux 3RedHatphp-0:4.3.2-48.ent*
Red Hat Enterprise Linux 4RedHatphp-0:4.3.9-3.22.12*
Red Hat Enterprise Linux 5RedHatphp-0:5.1.6-20.el5_2.1*
Red Hat Web Application Stack for RHEL 4RedHatphp-0:5.1.6-3.el4s1.10*
Php5Ubuntudapper*
Php5Ubuntuedgy*
Php5Ubuntufeisty*
Php5Ubuntugutsy*
Php5Ubuntuhardy*
Php5Ubuntuupstream*

References