Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23593
HistoryApr 10, 2020 - 12:31 a.m.

Information Disclosure

2020-04-1000:31:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.015 Low

EPSS

Percentile

86.9%

php is vulnerable to information disclosure. A memory disclosure flaw was found in the PHP gd extension’s imagerotate function. A remote attacker able to pass arbitrary values as the “background color” argument of the function could, possibly, view portions of the PHP interpreter’s memory.

References