PHP Group

Security Scorecard

Score

30F

Total CVEs

70

Patch Rate

0%

0 patched

Avg Response

-

days to patch

Critical Gaps

2

exploitable, no detection

Severity Breakdown

Critical0
High1
Medium1
Low0

Patch Status

Patched0 (0%)
Partial/Workaround0 (0%)
Unpatched70 (100%)

CVEs (70)

CVE IDTitleSeverityScoreDaysPatch
CVE-2013-3544CVE-2013-3544: "Unauthenticated Remote File Inclusion"N/A-4512dUnpatched
CVE-2012-5661CVE-2012-5661: Unpatched PHP Session Fixation VulnerabilityN/A-4701dUnpatched
CVE-2010-2972CVE-2010-2972 - Unpatched PHP File Inclusion VulnerabilityN/A-5611dUnpatched
CVE-2009-2962CVE-2009-2962 (Unvalidated Buffer Overflow in PHP's GD Library)N/A-5959dUnpatched
CVE-2006-3432CVE-2006-3432 (Unpatched Remote File Inclusion Vulnerability)N/A-6923dUnpatched
CVE-2006-0390CVE-2006-0390: Unpatched Remote File Inclusion VulnerabilityN/A-7226dUnpatched
CVE-2005-0683Uninitialized Pointer Dereference in PHPN/A-7531dUnpatched
CVE-2004-0187Uninitialized Pointer Dereference in PHPN/A-7944dUnpatched
CVE-2000-0860PHP File Upload VulnerabilityMEDIUM5.09169dUnpatched
CVE-2000-0059PHP3 Shell Metacharacter Injection VulnerabilityHIGH10.09480dUnpatched