oval:org.mitre.oval:def:12393

Definition Id: oval:org.mitre.oval:def:12393
 
Oval ID: oval:org.mitre.oval:def:12393
Title: Vulnerability in the iconv_mime_decode_headers function in the Iconv extension in PHP before 5.3.4
Description: The iconv_mime_decode_headers function in the Iconv extension in PHP before 5.3.4 does not properly handle encodings that are unrecognized by the iconv and mbstring (aka Multibyte String) implementations, which allows remote attackers to trigger an incomplete output array, and possibly bypass spam detection or have unspecified other impact, via a crafted Subject header in an e-mail message, as demonstrated by the ks_c_5601-1987 character set.
Family: windows Class: vulnerability
Reference(s): CVE-2010-4699
Version: 3
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s): PHP
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:12410
 
Oval ID: oval:org.mitre.oval:def:12410
Title: PHP is installed
Description: PHP is installed
Family: windows Class: inventory
Reference(s): cpe:/a:php:php
Version: 4
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s): PHP
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:12393