Security Advisory

CVE-2017-5677

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-02-06 18:00:00
Last updated 2024-08-05 15:11:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PEAR HTML_AJAX 0.3.0 through 0.5.7 has a PHP Object Injection Vulnerability in the PHP Serializer. It allows remote code execution. In one viewpoint, the root cause is an incorrect regular expression.