CVE

Id
25866  
CVE No.
CVE-2007-2509  
Status
Candidate  
Description
CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2 allows remote attackers to inject arbitrary FTP commands via CRLF sequences in the parameters to earlier FTP commands.  
Phase
Assigned (20070507)  
Votes
None (candidate not yet proposed)  
Comments