QID 38844
Date Published: 2021-07-08
QID 38844: PHP Multiple Security Vulnerabilities
PHP is a general purpose scripting language that is especially suited for web development and can be embedded into HTML.
PHP is affected by multiple vulnerabilities.
Affected Versions:
PHP versions 7.4.x prior to 7.4.21
PHP versions 7.3.x prior to 7.3.29
QID Detection Logic
The qid checks the php version via banner.
Successful SSRF attack could lead to unauthorized action or access to data within organization
Solution
Customers are advised to upgrade to the latest version of PHP.
Vendor References
- PHP Changelog -
www.php.net/ChangeLog-7.php
CVEs related to QID 38844
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| PHP Changelog |
|