OSVDB ID: 28273

Title: PHP PHPSESSID Character Implementation Third Party Session Handling Weakness

Info

Disclosure

Aug 24, 2006

Discovery

Aug 21, 2006

Dates

Exploit

Unknown

Solution

Unknown

Description

PHP contains a flaw that may allow a malicious user to inject PHP code into the 'PHPSESSID' session identifier. The flaw is due to lack of validation of the characters used in the 'PHPSESSID' session identifier. It is possible that the flaw may allow execution of arbitrary code resulting in a loss of integrity.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Unknown
OSVDB: Concern

Solution

Upgrade to version 4.4.3 or 5.1.4 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

The PHP Group

PHP

5.0.1
5.0.2
5.0.3
5.0.4
5.0.5
5.1.0
5.1.1
5.1.2
5.1.3
4.0.x
4.1.x
4.2.x
4.3.x
4.4.0
4.4.1
4.4.2

References

Credit

  • Stefan Esser - sesserhardened-php.net - www.hardened-php.net


Direct URL: http://osvdb.org/28273