Summary
PHP's xmlrpc extension library is prone to multiple denial-of- service vulnerabilities because it fails to properly handle crafted XML-RPC requests.
Exploiting these issues allows remote attackers to cause denial-of- service conditions in the context of an application using the vulnerable library.
PHP 5.3.1 is vulnerable
other versions may also be affected.
References
Severity
Classification
-
CVE CVE-2010-0397 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities