CVE Database
/

CVE-2012-0057

Back to search

CVE-2012-0057

Published: Feb 2, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

PHP before 5.3.9 has improper libxslt security settings, which allows remote attackers to create arbitrary files via a crafted XSLT stylesheet that uses the libxslt output extension.

VendorProductVersions

n/a

n/a

affected
n/a

References

HPSBMU02786
vendor-advisory
x_refsource_HP
DSA-2399
vendor-advisory
x_refsource_DEBIAN
SUSE-SU-2012:0411
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2012:0426
vendor-advisory
x_refsource_SUSE
SUSE-SU-2012:0472
vendor-advisory
x_refsource_SUSE
48668
third-party-advisory
x_refsource_SECUNIA
php-libxslt-security-bypass(72908)
vdb-entry
x_refsource_XF
SSRT100877
vendor-advisory
x_refsource_HP

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now