PHP NULL Character Security Bypass Vulnerability

Bugtraq ID: 44951
Class: Input Validation Error
CVE: CVE-2006-7243
Remote: Yes
Local: No
Published: Dec 18 2006 12:00AM
Updated: Mar 21 2014 12:44AM
Credit: djcapelis
Vulnerable: Ubuntu Ubuntu Linux 9.10 sparc
Ubuntu Ubuntu Linux 9.10 powerpc
Ubuntu Ubuntu Linux 9.10 lpia
Ubuntu Ubuntu Linux 9.10 i386
Ubuntu Ubuntu Linux 9.10 ARM
Ubuntu Ubuntu Linux 9.10 amd64
Ubuntu Ubuntu Linux 8.04 LTS sparc
Ubuntu Ubuntu Linux 8.04 LTS powerpc
Ubuntu Ubuntu Linux 8.04 LTS lpia
Ubuntu Ubuntu Linux 8.04 LTS i386
Ubuntu Ubuntu Linux 8.04 LTS amd64
Ubuntu Ubuntu Linux 6.06 LTS sparc
Ubuntu Ubuntu Linux 6.06 LTS powerpc
Ubuntu Ubuntu Linux 6.06 LTS i386
Ubuntu Ubuntu Linux 6.06 LTS amd64
Ubuntu Ubuntu Linux 11.04 powerpc
Ubuntu Ubuntu Linux 11.04 i386
Ubuntu Ubuntu Linux 11.04 ARM
Ubuntu Ubuntu Linux 11.04 amd64
Ubuntu Ubuntu Linux 10.10 powerpc
Ubuntu Ubuntu Linux 10.10 i386
Ubuntu Ubuntu Linux 10.10 ARM
Ubuntu Ubuntu Linux 10.10 amd64
Ubuntu Ubuntu Linux 10.04 sparc
Ubuntu Ubuntu Linux 10.04 powerpc
Ubuntu Ubuntu Linux 10.04 i386
Ubuntu Ubuntu Linux 10.04 ARM
Ubuntu Ubuntu Linux 10.04 amd64
RedHat Enterprise Linux Desktop Workstation 5 client
Red Hat Enterprise Linux Workstation Optional 6
Red Hat Enterprise Linux Workstation 6
Red Hat Enterprise Linux Server Optional 6
Red Hat Enterprise Linux Server 6
Red Hat Enterprise Linux HPC Node Optional 6
Red Hat Enterprise Linux HPC Node 6
Red Hat Enterprise Linux Desktop Optional 6
Red Hat Enterprise Linux 5 Server
PHP PHP 5.3.2
PHP PHP 5.3.1
PHP PHP 5.3
PHP PHP 5.3.3
Oracle Enterprise Linux 6.2
Oracle Enterprise Linux 6
Oracle Enterprise Linux 5
Mandriva Linux Mandrake 2010.1 x86_64
Mandriva Linux Mandrake 2010.1
Mandriva Linux Mandrake 2010.0 x86_64
Mandriva Linux Mandrake 2010.0
HP OpenVMS Secure Web Server 7.3 -2
HP OpenVMS Secure Web Server 7.3 -1
HP OpenVMS Secure Web Server 7.3
HP OpenVMS Secure Web Server 7.2 -2
HP OpenVMS Secure Web Server 1.2
HP OpenVMS Secure Web Server 1.1 -1
HP OpenVMS Secure Web Server 2.2
HP OpenVMS Secure Web Server 2.1-1
HP HP-UX Web Server Suite 3.21
HP HP-UX Web Server Suite 3.18
HP HP-UX Web Server Suite 3.17
HP HP-UX Web Server Suite 3.15
HP HP-UX Web Server Suite 3.14
HP HP-UX Web Server Suite 3.13
HP HP-UX Web Server Suite 3.12
HP HP-UX Web Server Suite 3.10
F5 FirePass 6.0.3
F5 FirePass 6.0.2
F5 FirePass 6.0.1
F5 FirePass 7.0
F5 FirePass 6.1
F5 FirePass 6.0.2.3
F5 FirePass 6.0
F5 BigIP Local Traffic Manager (LTM) 8900 10.2.1 HFA3
F5 BigIP Local Traffic Manager (LTM) 6400 10.2.1 HFA3
F5 BigIP Link Controller 10.1
F5 BigIP Link Controller 10.0.1
F5 BigIP Link Controller 10.0
F5 BigIP Global Traffic Manager (GTM) 10.1
F5 BigIP Global Traffic Manager (GTM) 10.0.1
F5 BigIP Global Traffic Manager (GTM) 10.0
F5 BigIP Application Security Manager (ASM) 10.1
F5 BigIP Application Security Manager (ASM) 10.0.1
F5 BigIP Application Security Manager (ASM) 10.0
F5 BIG-IP Protocol Security Manager 10.1
F5 BIG-IP Protocol Security Manager 10.0
CentOS CentOS 5
Avaya Aura Experience Portal 6.0
Apple Mac OS X Server 10.6.6
Apple Mac OS X Server 10.6.5
Apple Mac OS X Server 10.6.5
Apple Mac OS X Server 10.6.4
Apple Mac OS X Server 10.6.3
Apple Mac OS X Server 10.6.2
Apple Mac OS X Server 10.6.1
Apple Mac OS X Server 10.6
Apple Mac OS X 10.6.5
Apple Mac OS X 10.6.4
Apple Mac OS X 10.6.3
Apple Mac OS X 10.6.2
Apple Mac OS X 10.6.1
Apple Mac OS X 10.6
Not Vulnerable: PHP PHP 5.3.4 RC1
PHP PHP 5.3.4
HP HP-UX Web Server Suite 3.22
Apple Mac Os X Server 10.6.7


 

Privacy Statement
Copyright 2010, SecurityFocus