VDB
CVE-2007-1864
CVE-2007-1864
PUBLISHED
CVSS 7.5 HIGH
Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.
EPSS 4.18% · 88.9th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
4.18%
88.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| canonical | ubuntu_linux | 7.04, 6.06, 6.10 |
| redhat | enterprise_linux_workstation | 5.0 |
| n/a | n/a | n/a |
| php | php | 5.1.0, 5.2.0, 0 |
| debian | debian_linux | 3.1, 4.0 |
| redhat | enterprise_linux_server | 5.0 |
Exploit Intelligence
- 25660 (circl)
- MDKSA-2007:103 (circl)
- 25187 (circl)
- 25191 (circl)
- ADV-2007-2187 (circl)
- MDKSA-2007:102 (circl)
- 26048 (circl)
- RHSA-2007:0355 (circl)
- oval:org.mitre.oval:def:11257 (circl)
- GLSA-200705-19 (circl)
…and 20 more exploits
Timeline
- May 9, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
References
- http://secunia.com/advisories/25660 url
- http://secunia.com/advisories/25938 url
- MDKSA-2007:103 vendor-advisory
- 25187 third-party-advisory
- 25191 third-party-advisory
- ADV-2007-2187 vdb
- MDKSA-2007:102 vendor-advisory
- 26048 third-party-advisory
- RHSA-2007:0355 vendor-advisory
- oval:org.mitre.oval:def:11257 vdb
- GLSA-200705-19 vendor-advisory
- 2007-0017 vendor-advisory
- 23813 vdb
- http://us2.php.net/releases/4_4_7.php url
- RHSA-2007:0349 vendor-advisory
- DSA-1331 vendor-advisory
- https://issues.rpath.com/browse/RPL-1693 url
- DSA-1330 vendor-advisory
- http://us2.php.net/releases/5_2_2.php url
- USN-485-1 vendor-advisory
…and 12 more