Total vulnerabilities in the database
Directory traversal vulnerability in Zend Platform 2.2.1 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) sequence in the final component of the PHP session identifier (PHPSESSID). NOTE: in some cases, this issue can be leveraged to perform direct static code injection.
Software | From | Fixed in |
---|---|---|
zend / zend_platform | - | 2.2.1a.x |