The init_request_info function in sapi/cgi/cgi_main.c in...
High severity
Unreviewed
Published
May 1, 2022
to the GitHub Advisory Database
•
Updated Feb 11, 2024
Description
Published by the National Vulnerability Database
May 5, 2008
Published to the GitHub Advisory Database
May 1, 2022
Last updated
Feb 11, 2024
The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating the length of PATH_TRANSLATED, which might allow remote attackers to execute arbitrary code via a crafted URI.
References