Skip to content
Noroxi

php-gettext project records

2 published records for vendor php-gettext project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17
  2. 19

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

2 records
  • Eval injection vulnerability in php-gettext 1.0.12 and earlier allows remote attackers to execute arbitrary PHP code via a crafted plural fo

    CriticalCVSS 9.8Proof of conceptEPSS 20%

    php-gettext project · php-gettextFeb 7, 2017

  • The plural form formula in ngettext family of calls in php-gettext before 1.0.12 allows remote attackers to execute arbitrary code.

    CriticalCVSS 9.8No exploitEPSS 7%

    php-gettext project · php-gettextNov 4, 2019