CVE-2014-4721

Advisory lineage Upstream: 0 Downstream: 11
Modified
Published: 06 Jul 2014, 23:00
Last modified:06 Aug 2024, 11:27

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
2.6 LOW
v2.0 (nvd)
EPSS Score
9.89% LOW
10% probability +1.24%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

06 Jul 2014, 23:00
Published
Vulnerability first disclosed
06 Aug 2024, 11:27
Last Modified
Vulnerability information updated

Description

The phpinfo implementation in ext/standard/info.c in PHP before 5.4.30 and 5.5.x before 5.5.14 does not ensure use of the string data type for the PHP_AUTH_PW, PHP_AUTH_TYPE, PHP_AUTH_USER, and PHP_SELF variables, which might allow context-dependent attackers to obtain sensitive information from process memory by using the integer data type with crafted values, related to a "type confusion" vulnerability, as demonstrated by reading a private SSL key in an Apache HTTP Server web-hosting environment with mod_ssl and a PHP 5.3.x mod_php.

CVSS Metrics

  • v2.0LOWScore: 2.6AV:N/AC:H/Au:N/C:P/I:N/A:N

EPSS Trends

Current EPSS score: 9.89% Percentile: 93%

Techniques & Countermeasures

  • CWE-200Exposure of Sensitive Information to an Unauthorized Actor

    The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

Affected Systems

  • debiandebian_linux

    7.0 | 8.0

  • UnknownPHP

    ≥ 5.3.0, < 5.3.29 | ≥ 5.4.0, < 5.4.30 | ≥ 5.5.0, < 5.5.14

References (14)