Vulnerabilities > CVE-2007-4507 - Unspecified vulnerability in PHP 5.2.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple buffer overflows in the php_ntuser component for PHP 5.2.3 allow context-dependent attackers to cause a denial of service or execute arbitrary code via long arguments to the (1) ntuser_getuserlist, (2) ntuser_getuserinfo, (3) ntuser_getusergroups, or (4) ntuser_getdomaincontroller functions.
Exploit-Db
description | PHP 5.2.3 php_ntuser ntuser_getuserlist() Local Buffer Overflow PoC. CVE-2007-4507. Dos exploit for windows platform |
file | exploits/windows/dos/4304.php |
id | EDB-ID:4304 |
last seen | 2016-01-31 |
modified | 2007-08-23 |
platform | windows |
port | |
published | 2007-08-23 |
reporter | shinnai |
source | https://www.exploit-db.com/download/4304/ |
title | PHP 5.2.3 php_ntuser ntuser_getuserlist Local Buffer Overflow PoC |
type | dos |
Nessus
NASL family | CGI abuses |
NASL id | PHP_5_2_4.NASL |
description | According to its banner, the version of PHP installed on the remote host is older than 5.2.4. Such versions may be affected by various issues, including but not limited to several overflows. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25971 |
published | 2007-09-03 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25971 |
title | PHP < 5.2.4 Multiple Vulnerabilities |
code |
|
Statements
contributor | Mark J Cox |
lastmodified | 2007-08-24 |
organization | Red Hat |
statement | Not vulnerable. This issue did not affect the versions of php as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5, or Red Hat Application Stack 1. |