Search

Contact Us

Log in

Vulnerabilities / Insecure PHP Object deserialization

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Severity
high
CWE NameInsecure PHP Object deserialization
CWE IDCWE-502
CWE Score6.5
Compliance
OWASP TOP10 -> A8
HIPAA -> 164.306(a), 164.312(c)(1)
CVSS3.0
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
Confidentiality ImpactLow
Integrity ImpactLow
Availability ImpactNone
Insecure PHP Object deserialization