CVE
- Id
- 14594
- CVE No.
- CVE-2005-3388
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL with a "stacked array assignment."
- Phase
- Assigned (20051101)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
111044 | 14594 | CVE-2005-3388 | BUGTRAQ:20051031 Advisory 18/2005: PHP Cross Site Scripting (XSS) Vulnerability in phpinfo() | View |
111045 | 14594 | CVE-2005-3388 | URL:http://www.securityfocus.com/archive/1/archive/1/415292 | View |
111046 | 14594 | CVE-2005-3388 | MISC:http://www.hardened-php.net/advisory_182005.77.html | View |
111047 | 14594 | CVE-2005-3388 | CONFIRM:http://www.php.net/release_4_4_1.php | View |
111048 | 14594 | CVE-2005-3388 | CONFIRM:http://support.avaya.com/elmodocs2/security/ASA-2006-037.htm | View |
111049 | 14594 | CVE-2005-3388 | FEDORA:FLSA:166943 | View |
111050 | 14594 | CVE-2005-3388 | URL:http://www.fedoralegacy.org/updates/FC2/2005-11-28-FLSA_2005_166943__Updated_php_packages_fix_security_issues.html | View |
111051 | 14594 | CVE-2005-3388 | GENTOO:GLSA-200511-08 | View |
111052 | 14594 | CVE-2005-3388 | URL:http://www.gentoo.org/security/en/glsa/glsa-200511-08.xml | View |
111053 | 14594 | CVE-2005-3388 | HP:HPSBMA02159 | View |
111054 | 14594 | CVE-2005-3388 | URL:http://itrc.hp.com/service/cki/docDisplay.do?docId=c00786522 | View |
111055 | 14594 | CVE-2005-3388 | HP:SSRT061238 | View |
111056 | 14594 | CVE-2005-3388 | URL:http://itrc.hp.com/service/cki/docDisplay.do?docId=c00786522 | View |
111057 | 14594 | CVE-2005-3388 | MANDRIVA:MDKSA-2005:213 | View |
111058 | 14594 | CVE-2005-3388 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:213 | View |
111059 | 14594 | CVE-2005-3388 | OPENPKG:OpenPKG-SA-2005.027 | View |
111060 | 14594 | CVE-2005-3388 | URL:http://www.openpkg.org/security/OpenPKG-SA-2005.027-php.html | View |
111061 | 14594 | CVE-2005-3388 | REDHAT:RHSA-2005:831 | View |
111062 | 14594 | CVE-2005-3388 | URL:http://www.redhat.com/support/errata/RHSA-2005-831.html | View |
111063 | 14594 | CVE-2005-3388 | REDHAT:RHSA-2005:838 | View |
111064 | 14594 | CVE-2005-3388 | URL:http://www.redhat.com/support/errata/RHSA-2005-838.html | View |
111065 | 14594 | CVE-2005-3388 | REDHAT:RHSA-2006:0549 | View |
111066 | 14594 | CVE-2005-3388 | URL:http://rhn.redhat.com/errata/RHSA-2006-0549.html | View |
111067 | 14594 | CVE-2005-3388 | SUSE:SUSE-SR:2005:026 | View |
111068 | 14594 | CVE-2005-3388 | SUSE:SUSE-SR:2005:027 | View |
111069 | 14594 | CVE-2005-3388 | URL:http://www.novell.com/linux/security/advisories/2005_27_sr.html | View |
111070 | 14594 | CVE-2005-3388 | TURBO:TLSA-2006-38 | View |
111071 | 14594 | CVE-2005-3388 | URL:http://www.turbolinux.com/security/2006/TLSA-2006-38.txt | View |
111072 | 14594 | CVE-2005-3388 | UBUNTU:USN-232-1 | View |
111073 | 14594 | CVE-2005-3388 | URL:https://www.ubuntu.com/usn/usn-232-1/ | View |
111074 | 14594 | CVE-2005-3388 | BID:15248 | View |
111075 | 14594 | CVE-2005-3388 | URL:http://www.securityfocus.com/bid/15248 | View |
111076 | 14594 | CVE-2005-3388 | OVAL:oval:org.mitre.oval:def:10542 | View |
111077 | 14594 | CVE-2005-3388 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10542 | View |
111078 | 14594 | CVE-2005-3388 | VUPEN:ADV-2005-2254 | View |
111079 | 14594 | CVE-2005-3388 | URL:http://www.vupen.com/english/advisories/2005/2254 | View |
111080 | 14594 | CVE-2005-3388 | VUPEN:ADV-2006-4320 | View |
111081 | 14594 | CVE-2005-3388 | URL:http://www.vupen.com/english/advisories/2006/4320 | View |
111082 | 14594 | CVE-2005-3388 | SECTRACK:1015130 | View |
111083 | 14594 | CVE-2005-3388 | URL:http://securitytracker.com/id?1015130 | View |
111084 | 14594 | CVE-2005-3388 | SECUNIA:17371 | View |
111085 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17371 | View |
111086 | 14594 | CVE-2005-3388 | SECUNIA:18198 | View |
111087 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/18198 | View |
111088 | 14594 | CVE-2005-3388 | SECUNIA:17559 | View |
111089 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17559 | View |
111090 | 14594 | CVE-2005-3388 | SECUNIA:17490 | View |
111091 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17490 | View |
111092 | 14594 | CVE-2005-3388 | SECUNIA:17510 | View |
111093 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17510 | View |
111094 | 14594 | CVE-2005-3388 | SECUNIA:17531 | View |
111095 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17531 | View |
111096 | 14594 | CVE-2005-3388 | SECUNIA:17557 | View |
111097 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/17557 | View |
111098 | 14594 | CVE-2005-3388 | SECUNIA:18669 | View |
111099 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/18669 | View |
111100 | 14594 | CVE-2005-3388 | SECUNIA:21252 | View |
111101 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/21252 | View |
111102 | 14594 | CVE-2005-3388 | SECUNIA:22691 | View |
111103 | 14594 | CVE-2005-3388 | URL:http://secunia.com/advisories/22691 | View |
111104 | 14594 | CVE-2005-3388 | SREASON:133 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
62456 | JVNDB-2005-000658 | PHP の extract() および import_request_variables() 関数におけるグローバル変数を上書きされる脆弱性 | ------------ | CVE-2005-3390 | 14594 | 7.5 | http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000658.html | View |