Lucene search

K
cvelistMitreCVELIST:CVE-2008-3660
HistoryAug 15, 2008 - 12:00 a.m.

CVE-2008-3660

2008-08-1500:00:00
mitre
www.cve.org
2

8.3 High

AI Score

Confidence

High

0.048 Low

EPSS

Percentile

92.8%

PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo…php.

References