ID | CVE-2012-0807 | ||||||
Sažetak | Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin.cookie.encrypt and suhosin.multiheader are enabled, might allow remote attackers to execute arbitrary code via a long string that is used in a Set-Cookie HTTP header. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:H/Au:N/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 18-01-2018 - 02:29 | ||||||
Objavljeno | 27-01-2012 - 00:55 |