CVE-2007-2509

Description

From CVE.org

CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2 allows remote attackers to inject arbitrary FTP commands via CRLF sequences in the parameters to earlier FTP commands.

Frequently Asked Questions

Want to get errata notifications? Sign up here.