PHP Group

Security Scorecard

Score

30F

Total CVEs

70

Patch Rate

0%

0 patched

Avg Response

-

days to patch

Critical Gaps

2

exploitable, no detection

Severity Breakdown

Critical0
High1
Medium1
Low0

Patch Status

Patched0 (0%)
Partial/Workaround0 (0%)
Unpatched70 (100%)

CVEs (70)

CVE IDTitleSeverityScoreDaysPatch
CVE-2017-10938CVE-2017-10938 - "Unauthenticated Remote File Inclusion"N/A-2854dUnpatched
CVE-2017-1820CVE-2017-1820 - "Zero-Day" in PHP's `filter_var` FunctionN/A-2906dUnpatched
CVE-2017-1970Uninitialized Pointer Dereference in PHP's curl extensionN/A-2906dUnpatched
CVE-2017-4957CVE-2017-4957: "Unbound" Vulnerability in PHP's GD LibraryN/A-2908dUnpatched
CVE-2006-3645Uninitialized Pointer Dereference in PHPN/A-3142dUnpatched
CVE-2008-3085CVE-2008-3085 - Unpatched PHP Session Fixation VulnerabilityN/A-3142dUnpatched
CVE-2009-3990CVE-2009-3990 - Unpatched Remote File Inclusion VulnerabilityN/A-3142dUnpatched
CVE-2009-5108Unpatched PHPMailer VulnerabilityN/A-3142dUnpatched
CVE-2009-3685CVE-2009-3685 - Unpatched PHP Scripting Engine VulnerabilityN/A-3142dUnpatched
CVE-2010-4127CVE-2010-4127 - Unpatched Remote File Inclusion VulnerabilityN/A-3142dUnpatched