Vulnerability Name CVE Severity
PHP register_globals enabled
PHP register_globals Is Enabled
PHP Reliance on Cookies without Validation and Integrity Checking Vulnerability (CVE-2020-7070) CVE-2020-7070
PHP Resource Management Errors Vulnerability (CVE-2006-1991) CVE-2006-1991
PHP Resource Management Errors Vulnerability (CVE-2007-3806) CVE-2007-3806
PHP Resource Management Errors Vulnerability (CVE-2010-1861) CVE-2010-1861
PHP Resource Management Errors Vulnerability (CVE-2010-1917) CVE-2010-1917
PHP Resource Management Errors Vulnerability (CVE-2010-2093) CVE-2010-2093
PHP Resource Management Errors Vulnerability (CVE-2010-3710) CVE-2010-3710
PHP Resource Management Errors Vulnerability (CVE-2010-4150) CVE-2010-4150
PHP Resource Management Errors Vulnerability (CVE-2010-4697) CVE-2010-4697
PHP Resource Management Errors Vulnerability (CVE-2011-1468) CVE-2011-1468
PHP Resource Management Errors Vulnerability (CVE-2011-1657) CVE-2011-1657
PHP Resource Management Errors Vulnerability (CVE-2011-3267) CVE-2011-3267
PHP Resource Management Errors Vulnerability (CVE-2012-0781) CVE-2012-0781
PHP Resource Management Errors Vulnerability (CVE-2012-0789) CVE-2012-0789
PHP Resource Management Errors Vulnerability (CVE-2014-0237) CVE-2014-0237
PHP Resource Management Errors Vulnerability (CVE-2014-2497) CVE-2014-2497
PHP Resource Management Errors Vulnerability (CVE-2014-3538) CVE-2014-3538
PHP Resource Management Errors Vulnerability (CVE-2015-4024) CVE-2015-4024
PHP session.use_only_cookies Is Disabled
PHP session.use_trans_sid enabled
PHP socket_iovec_alloc() integer overflow CVE-2003-0172
PHP super-globals-overwrite
PHP Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability (CVE-2004-0594) CVE-2004-0594
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2015-9253) CVE-2015-9253
PHP undefined Safe_Mode_Include_Dir safemode bypass vulnerability CVE-2003-0863
PHP unserialize() used on user input
PHP unspecified remote arbitrary file upload vulnerability CVE-2004-0959
PHP upload arbitrary file disclosure vulnerability CVE-2000-0860
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2009-3294) CVE-2009-3294
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2010-2094) CVE-2010-2094
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2010-2950) CVE-2010-2950
PHP Use of Insufficiently Random Values Vulnerability (CVE-2023-3247) CVE-2023-3247
PHP Use of Password Hash With Insufficient Computational Effort Vulnerability (CVE-2023-0567) CVE-2023-0567
PHP Use of Uninitialized Resource Vulnerability (CVE-2019-11038) CVE-2019-11038
PHP version older than 4.3.8 CVE-2004-0594 CVE-2004-0595
PHP X Prober publicly accessible
Phusion Passenger Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-16355) CVE-2017-16355
Phusion Passenger Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2013-4136) CVE-2013-4136
Phusion Passenger Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-12615) CVE-2018-12615
Phusion Passenger Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2119) CVE-2013-2119
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-4613) CVE-2014-4613
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-4614) CVE-2014-4614
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-7724) CVE-2018-7724
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2023-33359) CVE-2023-33359
Piwigo Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3790) CVE-2011-3790
Piwigo Improper Access Control Vulnerability (CVE-2016-10514) CVE-2016-10514
Piwigo Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2013-1469) CVE-2013-1469
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-4039) CVE-2009-4039
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2010-1707) CVE-2010-1707
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-2209) CVE-2012-2209
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-4525) CVE-2012-4525
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-4526) CVE-2012-4526
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-1980) CVE-2014-1980
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-3900) CVE-2014-3900
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2034) CVE-2015-2034
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-9751) CVE-2016-9751
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-10083) CVE-2016-10083
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-10513) CVE-2016-10513
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-5608) CVE-2017-5608
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-9452) CVE-2017-9452
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-9836) CVE-2017-9836
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-17775) CVE-2017-17775
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-17825) CVE-2017-17825
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-17826) CVE-2017-17826
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-5692) CVE-2018-5692
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-7722) CVE-2018-7722
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-7723) CVE-2018-7723
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-8089) CVE-2020-8089
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-9467) CVE-2020-9467
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-22148) CVE-2020-22148
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-22150) CVE-2020-22150
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-40678) CVE-2021-40678
Piwigo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-40882) CVE-2021-40882