Lucene search

K
cveMitreCVE-2007-4507
HistoryAug 23, 2007 - 7:17 p.m.

CVE-2007-4507

2007-08-2319:17:00
mitre
web.nvd.nist.gov
33
cve-2007-4507
buffer overflow
php
denial of service
arbitrary code execution
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

High

EPSS

0.004

Percentile

73.6%

Multiple buffer overflows in the php_ntuser component for PHP 5.2.3 allow context-dependent attackers to cause a denial of service or execute arbitrary code via long arguments to the (1) ntuser_getuserlist, (2) ntuser_getuserinfo, (3) ntuser_getusergroups, or (4) ntuser_getdomaincontroller functions.

Affected configurations

Nvd
Node
phpphpMatch5.2.3
VendorProductVersionCPE
phpphp5.2.3cpe:2.3:a:php:php:5.2.3:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

High

EPSS

0.004

Percentile

73.6%