Vulnerability Database

296,172

Total vulnerabilities in the database

CVE-2007-1452

The FDF support (ext/fdf) in PHP 5.2.0 and earlier does not implement the input filtering hooks for ext/filter, which allows remote attackers to bypass web site filters via an application/vnd.fdf formatted POST.

  • Published: Mar 14, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-1452
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:P/A:N

No CWE or OWASP classifications available.

Software From Fixed in
php / php 5.1.5 5.1.5.x
php / php 5.1.2 5.1.2.x
php / php 5.1.1 5.1.1.x
php / php 5.1.6 5.1.6.x
php / php 5.0-rc1 5.0-rc1.x
php / php 5.0.5 5.0.5.x
php / php 5.0.1 5.0.1.x
php / php 5.1.4 5.1.4.x
php / php 5.0.4 5.0.4.x
php / php 5.0-rc3 5.0-rc3.x
php / php 5.0.3 5.0.3.x
php / php 5.1.0 5.1.0.x
php / php 5.2.0 5.2.0.x
php / php 5.0-rc2 5.0-rc2.x
php / php 5.1.3 5.1.3.x
php / php 5.0.2 5.0.2.x
php / php 5.0.0 5.0.0.x