Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-3065
HistoryAug 20, 2010 - 8:00 p.m.

Default configuration

2010-08-2020:00:00
PRIOn knowledge base
www.prio-n.com
3

AI Score

7

Confidence

Low

EPSS

0.005

Percentile

75.7%

The default session serializer in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 does not properly handle the PS_UNDEF_MARKER marker, which allows context-dependent attackers to modify arbitrary session variables via a crafted session variable name.