CVE-2007-1452
MEDIUM 5.0EPSS 5.2%
The FDF support (ext/fdf) in PHP 5.2.0 and earlier does not implement the input filtering hooks for ext/filter, which allows remote attackers to bypass web site filters via an application/vnd.fdf formatted POST.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N - EPSS
- 5.15% chance of exploitation in the next 30 days, 92th percentile
- Published
- 2007-03-14
- Updated
- 2024-09-16