Summary
PHP's xmlrpc extension library is prone to multiple denial-of- service vulnerabilities because it fails to properly handle crafted XML-RPC requests.
Exploiting these issues allows remote attackers to cause denial-of- service conditions in the context of an application using the vulnerable library.
PHP 5.3.1 is vulnerable
other versions may also be affected.
References
Severity
Classification
-
CVE CVE-2010-0397 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities
- Ampache Reflected Cross Site Scripting Vulnerability
- Apache Tomcat TroubleShooter Servlet Installed
- Apache Archiva Home Page Cross-Site Scripting vulnerability
- Annuaire PHP 'sites_inscription.php' Cross Site Scripting Vulnerability
- Abtp Portal Project 'ABTPV_BLOQUE_CENT' Parameter Local and Remote File Include Vulnerabilities