← All CVEs

CVE-2016-4071

critical · 9.8

Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via format string specifiers in an SNMP::get call.

9.8
CVSS
19.5%
EPSS (exploit prob.)
97th
EPSS percentile
2016-05-20
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-20

Affected products

VendorProductAffected versions
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.0
phpphp5.6.1
phpphp5.6.2
phpphp5.6.3
phpphp5.6.4
phpphp5.6.5
phpphp5.6.6
phpphp5.6.7
phpphp5.6.8
phpphp5.6.9
phpphp5.6.10
phpphp5.6.11
phpphp5.6.12
phpphp5.6.13
phpphp5.6.14
phpphp5.6.15
phpphp5.6.16
phpphp5.6.17
phpphp5.6.18
phpphp5.6.19
applemac_os_x<= 10.11.4
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0
phpphp5.5.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2016-4071