{"api_version":"1","generated_at":"2026-07-23T12:02:43+00:00","cve":"CVE-2007-2748","urls":{"html":"https://cve.report/CVE-2007-2748","api":"https://cve.report/api/cve/CVE-2007-2748.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2748","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2748"},"summary":{"title":"CVE-2007-2748","description":"The substr_count function in PHP 5.2.1 and earlier allows context-dependent attackers to obtain sensitive information via unspecified vectors, a different affected function than CVE-2007-1375.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-05-17 20:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/24012","name":"http://www.securityfocus.com/bid/24012","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"PHP 5 Substr_Count Integer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.attrition.org/pipermail/vim/2007-May/001621.html","name":"http://www.attrition.org/pipermail/vim/2007-May/001621.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"[VIM] CVE-2007-1375 additional vector?","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://us2.php.net/releases/5_2_2.php","name":"http://us2.php.net/releases/5_2_2.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"PHP: PHP 5.2.2 Release Announcement","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/26895","name":"http://secunia.com/advisories/26895","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Mandriva update for php - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:187","name":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:187","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Advisories | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/34730","name":"http://osvdb.org/34730","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.novell.com/linux/security/advisories/2007_15_sr.html","name":"http://www.novell.com/linux/security/advisories/2007_15_sr.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Security Announcement","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2748","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2748","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2748","vulnerable":"1","versionEndIncluding":"5.2.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"php","cpe5":"php","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[{"cvename":"CVE-2007-2748","organization":"Red Hat","lastmodified":"2008-11-26","contributor":"Tomas Hoger","statementText":"We do not consider this flaw to be a security issue as it is only exploitable by the script author. No trust boundary is crossed. This flaw exists in versions of PHP as shipped in Red Hat Enterprise Linux 5 and Red Hat Application Stack 1. These issue did not affect the versions of PHP as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or Red Hat Application Stack 2.","cve_year":"2007","cve_id":"2748","crc32":"e529b681"}],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:49:57.269Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"34730","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/34730"},{"name":"20070516 CVE-2007-1375 additional vector?","tags":["mailing-list","x_refsource_VIM","x_transferred"],"url":"http://www.attrition.org/pipermail/vim/2007-May/001621.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://us2.php.net/releases/5_2_2.php"},{"name":"MDKSA-2007:187","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:187"},{"name":"24012","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24012"},{"name":"26895","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26895"},{"name":"SUSE-SR:2007:015","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://www.novell.com/linux/security/advisories/2007_15_sr.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-05-03T00:00:00.000Z","descriptions":[{"lang":"en","value":"The substr_count function in PHP 5.2.1 and earlier allows context-dependent attackers to obtain sensitive information via unspecified vectors, a different affected function than CVE-2007-1375."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2007-08-09T09:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"34730","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/34730"},{"name":"20070516 CVE-2007-1375 additional vector?","tags":["mailing-list","x_refsource_VIM"],"url":"http://www.attrition.org/pipermail/vim/2007-May/001621.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://us2.php.net/releases/5_2_2.php"},{"name":"MDKSA-2007:187","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:187"},{"name":"24012","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24012"},{"name":"26895","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26895"},{"name":"SUSE-SR:2007:015","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://www.novell.com/linux/security/advisories/2007_15_sr.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2748","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The substr_count function in PHP 5.2.1 and earlier allows context-dependent attackers to obtain sensitive information via unspecified vectors, a different affected function than CVE-2007-1375."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"34730","refsource":"OSVDB","url":"http://osvdb.org/34730"},{"name":"20070516 CVE-2007-1375 additional vector?","refsource":"VIM","url":"http://www.attrition.org/pipermail/vim/2007-May/001621.html"},{"name":"http://us2.php.net/releases/5_2_2.php","refsource":"CONFIRM","url":"http://us2.php.net/releases/5_2_2.php"},{"name":"MDKSA-2007:187","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:187"},{"name":"24012","refsource":"BID","url":"http://www.securityfocus.com/bid/24012"},{"name":"26895","refsource":"SECUNIA","url":"http://secunia.com/advisories/26895"},{"name":"SUSE-SR:2007:015","refsource":"SUSE","url":"http://www.novell.com/linux/security/advisories/2007_15_sr.html"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2748","datePublished":"2007-05-17T20:00:00.000Z","dateReserved":"2007-05-17T00:00:00.000Z","dateUpdated":"2024-08-07T13:49:57.269Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-05-17 20:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:php:*:*:*:*:*:*:*:*","versionEndIncluding":"5.2.1","matchCriteriaId":"FEE12690-B08D-4AB2-8092-013DE1A33C4C"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2748","Ordinal":"1","Title":"CVE-2007-2748","CVE":"CVE-2007-2748","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2748","Ordinal":"1","NoteData":"The substr_count function in PHP 5.2.1 and earlier allows context-dependent attackers to obtain sensitive information via unspecified vectors, a different affected function than CVE-2007-1375.","Type":"Description","Title":"CVE-2007-2748"},{"CveYear":"2007","CveId":"2748","Ordinal":"2","NoteData":"2007-05-17","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2748","Ordinal":"3","NoteData":"2007-08-09","Type":"Other","Title":"Modified"}]}}}