CVE-2018-10547

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

An issue was discovered in ext/phar/phar_object.c in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. There is Reflected XSS on the PHAR 403 and 404 error pages via request data of a request for a .phar file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2018-5712.

References

http://php.net/ChangeLog-5.php

http://php.net/ChangeLog-7.php

http://www.securitytracker.com/id/1040807

https://access.redhat.com/errata/RHSA-2019:2519

https://bugs.php.net/bug.php?id=76129

https://lists.debian.org/debian-lts-announce/2018/05/msg00004.html

https://lists.debian.org/debian-lts-announce/2018/06/msg00005.html

https://security.netapp.com/advisory/ntap-20180607-0003/

https://usn.ubuntu.com/3646-1/

https://usn.ubuntu.com/3646-2/

https://www.debian.org/security/2018/dsa-4240

https://www.tenable.com/security/tns-2018-12

Details

Source: MITRE

Published: 2018-04-29

Updated: 2019-08-19

Type: CWE-79

Risk Information

CVSS v2

Base Score: 4.3

Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Impact Score: 2.9

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3

Base Score: 6.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Impact Score: 2.7

Exploitability Score: 2.8

Severity: MEDIUM

Tenable Plugins

View all (32 total)

IDNameProductFamilySeverity
143988NewStart CGSL CORE 5.05 / MAIN 5.05 : php Multiple Vulnerabilities (NS-SA-2020-0090)NessusNewStart CGSL Local Security Checks
critical
143917NewStart CGSL CORE 5.04 / MAIN 5.04 : php Multiple Vulnerabilities (NS-SA-2020-0059)NessusNewStart CGSL Local Security Checks
critical
137966EulerOS Virtualization 3.0.6.0 : php (EulerOS-SA-2020-1747)NessusHuawei Local Security Checks
critical
135827Scientific Linux Security Update : php on SL7.x x86_64 (20200407)NessusScientific Linux Local Security Checks
critical
135338CentOS 7 : php (CESA-2020:1112)NessusCentOS Local Security Checks
critical
135040RHEL 7 : php (RHSA-2020:1112)NessusRed Hat Local Security Checks
critical
132184EulerOS 2.0 SP3 : php (EulerOS-SA-2019-2649)NessusHuawei Local Security Checks
critical
131592EulerOS 2.0 SP2 : php (EulerOS-SA-2019-2438)NessusHuawei Local Security Checks
critical
129178EulerOS 2.0 SP5 : php (EulerOS-SA-2019-1984)NessusHuawei Local Security Checks
critical
98868PHP 7.2.x < 7.2.5 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
high
98860PHP 7.1.x < 7.1.17 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
high
98849PHP 7.0.x < 7.0.30 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
high
98826PHP 5.6.x < 5.6.36 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
high
120886Fedora 28 : php (2018-ee6707d519)NessusFedora Local Security Checks
high
120023SUSE SLES12 Security Update : php5 (SUSE-SU-2018:1291-1)NessusSuSE Local Security Checks
medium
120021SUSE SLES12 Security Update : php7 (SUSE-SU-2018:1176-1)NessusSuSE Local Security Checks
medium
117672Tenable SecurityCenter < 5.7.1 Multiple Vulnerabilities (TNS-2018-12)NessusMisc.
critical
110928Debian DSA-4240-1 : php7.0 - security updateNessusDebian Local Security Checks
critical
110697Debian DLA-1397-1 : php5 security updateNessusDebian Local Security Checks
critical
109878openSUSE Security Update : php5 (openSUSE-2018-465)NessusSuSE Local Security Checks
high
109871Slackware 14.0 / 14.1 / 14.2 : php (SSA:2018-136-02)NessusSlackware Local Security Checks
high
109860SUSE SLES11 Security Update : php53 (SUSE-SU-2018:1294-1)NessusSuSE Local Security Checks
high
109812Ubuntu 14.04 LTS / 16.04 LTS / 17.10 / 18.04 LTS : PHP vulnerabilities (USN-3646-1)NessusUbuntu Local Security Checks
high
109714openSUSE Security Update : php7 (openSUSE-2018-441)NessusSuSE Local Security Checks
high
109701Amazon Linux AMI : php56 / php70,php71 (ALAS-2018-1019)NessusAmazon Linux Local Security Checks
high
109657Debian DLA-1373-1 : php5 security updateNessusDebian Local Security Checks
high
109579PHP 7.2.x < 7.2.5 Stack Buffer OverflowNessusCGI abuses
high
109578PHP 7.1.x < 7.1.17 Multiple VulnerabilitiesNessusCGI abuses
high
109577PHP 7.0.x < 7.0.30 Multiple VulnerabilitiesNessusCGI abuses
high
109576PHP 5.6.x < 5.6.36 Multiple VulnerabilitiesNessusCGI abuses
high
109560Fedora 26 : php (2018-6071a600e8)NessusFedora Local Security Checks
high
109559Fedora 27 : php (2018-04f6056c42)NessusFedora Local Security Checks
high