« Security's Symbiosis | Main | Article: ASP Session Cookies »

PHP Month of bugs status update #2

Here is another status update for the month of PHP Bugs. Here are the latest vulnerabilities.

* MOPB-11-2007:PHP WDDX Session Deserialization Information Leak Vulnerability
* MOPB-10-2007:PHP php_binary Session Deserialization Information Leak Vulnerability
* MOPB-09-2007:PHP wddx_deserialize() String Append Buffer Overflow Vulnerability
* MOPB-08-2007:PHP 4 phpinfo() XSS Vulnerability (Deja-vu)
* BONUS-07-2007:Zend Platform ini_modifier Local Root Vulnerability
* BONUS-06-2007:Zend Platform Insecure File Permission Local Root Vulnerability

Comments

Feed You can follow this conversation by subscribing to the comment feed for this post.


All Comments are Moderated and will be delayed!


Post a comment







Remember personal info?