oval:org.mitre.oval:def:10597

Definition Id: oval:org.mitre.oval:def:10597
 
Oval ID: oval:org.mitre.oval:def:10597
Title: Unspecified vulnerability in session.c in PHP before 5.1.3 has unknown impact and attack vectors, related to "certain characters in session names," including special characters that are frequently associated with CRLF injection, SQL injection, cross-site scripting (XSS), and HTTP response splitting vulnerabilities. NOTE: while the nature of the vulnerability is unspecified, it is likely that this is related to a violation of an expectation by PHP applications that the session name is alphanumeric, as implied in the PHP manual for session_name().
Description: Unspecified vulnerability in session.c in PHP before 5.1.3 has unknown impact and attack vectors, related to "certain characters in session names," including special characters that are frequently associated with CRLF injection, SQL injection, cross-site scripting (XSS), and HTTP response splitting vulnerabilities. NOTE: while the nature of the vulnerability is unspecified, it is likely that this is related to a violation of an expectation by PHP applications that the session name is alphanumeric, as implied in the PHP manual for session_name().
Family: unix Class: vulnerability
Reference(s): CVE-2006-3016
Version: 5
Platform(s): Red Hat Enterprise Linux 3
CentOS Linux 3
Red Hat Enterprise Linux 4
CentOS Linux 4
Oracle Linux 4
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:16636
 
Oval ID: oval:org.mitre.oval:def:16636
Title: CentOS Linux 4.x
Description: The operating system installed on the system is CentOS Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:4
Version: 3
Platform(s): CentOS Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10597
Definition Id: oval:org.mitre.oval:def:11831
 
Oval ID: oval:org.mitre.oval:def:11831
Title: The operating system installed on the system is Red Hat Enterprise Linux 4
Description: The operating system installed on the system is Red Hat Enterprise Linux 4.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:4
Version: 7
Platform(s): Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10597
Definition Id: oval:org.mitre.oval:def:16651
 
Oval ID: oval:org.mitre.oval:def:16651
Title: CentOS Linux 3.x
Description: The operating system installed on the system is CentOS Linux 3.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:3
Version: 3
Platform(s): CentOS Linux 3
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10597
Definition Id: oval:org.mitre.oval:def:15990
 
Oval ID: oval:org.mitre.oval:def:15990
Title: Oracle Linux 4.x
Description: The operating system installed on the system is Oracle Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:oracle:linux:4
Version: 5
Platform(s): Oracle Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10597
Definition Id: oval:org.mitre.oval:def:11782
 
Oval ID: oval:org.mitre.oval:def:11782
Title: The operating system installed on the system is Red Hat Enterprise Linux 3
Description: The operating system installed on the system is Red Hat Enterprise Linux 3.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:3
Version: 7
Platform(s): Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:10597