Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23188
HistoryApr 10, 2020 - 12:18 a.m.

Privilege Escalation

2020-04-1000:18:59
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

EPSS

0.02

Percentile

89.0%

php is vulnerable to privilege escalation. The vulnerability exists as a flaw was found in the PHP money_format function. If a remote attacker was able to pass arbitrary data to the money_format function this could possibly result in an information leak or denial of service. Note that is is unusual for a PHP script to pass user-supplied data to the money_format function.

References