PHP 5.3.1 - LCG Entropy Security



EKU-ID: 38493 CVE: CVE-2010-1128;OSVDB-63323 OSVDB-ID:
Author: Rasmus Published: 2010-02-26 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/38430/info

PHP is prone to a security vulnerability that affects LCG (Linear Congruential) entropy.

Attackers can exploit this issue to steal sessions or other sensitive data.

Versions prior to PHP 5.2.13 are affected.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/33677.tar.gz