PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection. Note: Third parties have disputed this as not affecting PHP-Memcached directly.
References
Link | Resource |
---|---|
https://github.com/php-memcached-dev/php-memcached/issues/519 | |
https://xhzeem.me/posts/Php5-memcached-Injection-Bypass/read/ | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-04-05T17:00:33
Updated: 2024-06-04T17:16:16.462Z
Reserved: 2022-03-07T00:00:00
Link: CVE-2022-26635
JSON object: View
NVD Information
Status : Modified
Published: 2022-04-05T17:15:08.477
Modified: 2024-06-04T19:17:14.970
Link: CVE-2022-26635
JSON object: View
Redhat Information
No data.
CWE