Vulnerability & Exploit Database

Back to search

OS X update for PHP (CVE-2011-4885)

Severity CVSS Published Added Modified
5 (AV:N/AC:L/Au:N/C:N/I:N/A:P) December 28, 2011 July 15, 2012 April 04, 2017

Available Exploits 

Description

PHP before 5.3.9 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!

 Download now

References

Solution

apple-osx-upgrade-10_7_4

Related Vulnerabilities