Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19288
HistoryMay 16, 2019 - 2:59 a.m.

Arbitrary Code Execution

2019-05-1602:59:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.024 Low

EPSS

Percentile

89.9%

PHP is vulnerable to arbitrary code execution vulnerability. The vulnerability exists in the function phar_parse_pharfile of the file ext/phar/phar.c. Remote attackers could cause a denial of service or possibly execute arbitrary code via a crafted PHAR archive with an alias mismatch.