Skip to content
Noroxi

phpids records

6 published records for vendor phpids.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    6 records
    • CVE-2011-5021
      30Monitor

      PHPIDS before 0.7 does not properly implement Regular Expression Denial of Service (ReDoS) filters, which allows remote attackers to bypass

      HighCVSS 7.5No exploitEPSS 1%

      phpids · phpidsDec 29, 2011

    • CVE-2011-3781
      20Monitor

      PHPIDS 0.6.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pat

      MediumCVSS 5.0No exploitEPSS 1%

      phpids · phpidsSep 23, 2011

    • CVE-2007-3578
      17Monitor

      PHPIDS before 20070703 does not properly handle (1) arithmetic expressions and (2) unclosed comments, which allows remote attackers to injec

      MediumCVSS 4.3No exploitEPSS 1%

      phpids · phpidsJul 5, 2007

    • CVE-2007-3577
      17Monitor

      PHPIDS before 20070703 does not properly handle use of the substr method in (1) document.location.search and (2) document.referrer; (3) cert

      MediumCVSS 4.3No exploitEPSS 1%

      phpids · phpidsJul 5, 2007

    • CVE-2007-3579
      17Monitor

      PHPIDS before 20070703 does not properly handle setting the .text property of a SCRIPT element before its attachment to the DOM, which allow

      MediumCVSS 4.3No exploitEPSS 1%

      phpids · phpidsJul 5, 2007

    • CVE-2007-3580
      17Monitor

      PHPIDS does not properly handle certain code containing newlines, as demonstrated by a try/catch block within a loop, which allows user-assi

      MediumCVSS 4.3No exploitEPSS 1%

      phpids · phpidsJul 5, 2007