ID:11504 - Exploit for Input validation error in PHP - CVE-2007-1453

 
Main Vulnerability Database Exploits ID:11504 - Exploit for Input validation error in PHP - CVE-2007-1453

ID:11504 - Exploit for Input validation error in PHP - CVE-2007-1453

Published: June 9, 2025


Vulnerability identifier: #VU110437
Vulnerability risk: Medium
CVE-ID: CVE-2007-1453
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
PHP

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

Buffer underflow in the PHP_FILTER_TRIM_DEFAULT macro in the filtering extension (ext/filter) in PHP 5.2.0 allows context-dependent attackers to execute arbitrary code by calling filter_var with certain modes such as FILTER_VALIDATE_INT, which causes filter to write a null byte in whitespace that precedes the buffer.


Remediation

Install update from vendor's website.