CVE-2008-5844 PUBLISHED CVSS 7.5 HIGH

PHP 5.2.7 contains an incorrect change to the FILTER_UNSAFE_RAW functionality, and unintentionally disables magic_quotes_gpc regardless of the actual magic_quotes_gpc setting, which might make it easier for context-dependent attackers to conduct SQL injection attacks and unspecified other attacks.

EPSS 0.43% · 62.6th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
0.43%
62.6th percentile

Affected Products

VendorProductVersions
n/an/an/a
phpphp5.2.7

Timeline

References

Open in Interactive Console →