Description
The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465.
Remediation
References
Related Vulnerabilities
Apache HTTP Server Other Vulnerability (CVE-2003-0020)
Jenkins CVE-2013-0330 Vulnerability (CVE-2013-0330)
Drupal Core 5.x Cross-Site Request Forgery (5.0 - 5.2)
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2021-21025)
MySQL Use of Externally-Controlled Format String Vulnerability (CVE-2009-2446)