The import_request_variables function in PHP 4.0.7 through 4.4.6, and 5.x before 5.2.2, when called without a prefix, does not prevent the (1) GET, (2) POST, (3) COOKIE, (4) FILES, (5) SERVER, (6) SESSION, and other superglobals from being overwritten, which allows remote attackers to spoof source IP address and Referer data, and have other unspecified impact. NOTE: it could be argued that this is a design limitation of PHP and that only the misuse of this feature, i.e. implementation bugs in applications, should be included in CVE. However, it has been fixed by the vendor.
CVSS Details
- CVSS 3.1 Base Score: 7.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Php | — | Upgrade to PHP version 5.2.2 | Oct 1, 2012 | Mar 10, 2007 |
| Suse | — | Upgrade php4-bz2Upgrade php4-pgsqlUpgrade php5-soapUpgrade php4-ypUpgrade php4-pearUpgrade php5-fastcgiUpgrade apache2-mod_php4Upgrade php5-mysqlUpgrade php4-domxmlUpgrade php4-dbaUpgrade php4-imapUpgrade php5-pdoUpgrade php5-gdUpgrade php5-opensslUpgrade php4-fastcgiUpgrade php5-ldapUpgrade php4-fileproUpgrade php4-bcmathUpgrade php5-calendarUpgrade php5-imapUpgrade php5-curlUpgrade php4-gettextUpgrade mod_php4-apache2Upgrade php4-calendarUpgrade php4-sysvsemUpgrade php4-curlUpgrade suse-releaseUpgrade php4-zlibUpgrade php5-pspellUpgrade php4-ftpUpgrade php4-mcalUpgrade php5-bz2Upgrade php4-mysqlUpgrade php4-qtdomUpgrade php5-dbaseUpgrade php5-mbstringUpgrade php5-pgsqlUpgrade php5-xslUpgrade php5-ftpUpgrade apache2-mod_php5Upgrade php5-snmpUpgrade php5-sysvmsgUpgrade php5-mhashUpgrade php4-xsltUpgrade php4-mime_magicUpgrade php5-bcmathUpgrade php5-sysvshmUpgrade php4-mcryptUpgrade php5-xmlreaderUpgrade php5-pearUpgrade php5-develUpgrade php4-iconvUpgrade php4-mhashUpgrade php4-snmpUpgrade php5-posixUpgrade apache-mod_php4Upgrade php4-ctypeUpgrade php4-gmpUpgrade php4-readlineUpgrade php5-odbcUpgrade php5-sqliteUpgrade php4-wddxUpgrade php5-sysvsemUpgrade php5-pcntl | Feb 17, 2015 | Mar 10, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub