Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHP FTP_Putcmd Function HTTP Response Splitting Vulnerability

PHP is prone to an HTTP-response-splitting vulnerability because it fails to sanitize user-supplied input.

A remote attacker may exploit this vulnerability to influence or misrepresent how web content is served, cached, or interpreted. This could aid in various attacks that attempt to entice client users into a false sense of trust.

This issue affects these versions:

PHP 5 prior to 5.2.2
PHP 4 prior to 4.4.7.







 

Privacy Statement
Copyright 2009, SecurityFocus