PoC Index

CVE-2007-1452

MEDIUM 5.0EPSS 5.2%

The FDF support (ext/fdf) in PHP 5.2.0 and earlier does not implement the input filtering hooks for ext/filter, which allows remote attackers to bypass web site filters via an application/vnd.fdf formatted POST.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS
5.15% chance of exploitation in the next 30 days, 92th percentile
Published
2007-03-14
Updated
2024-09-16

ExploitDB entries (1)

References

Related