peter bassill · operator
$ cve CVE-2004-0595 JSON

CVE-2004-0595 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 45.2% (pctl 99)

Patch early

A public exploit exists.

Description

The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricting input to allowed tags, which allows dangerous tags to be processed by web browsers such as Internet Explorer and Safari, which ignore null characters and facilitate the exploitation of cross-site scripting (XSS) vulnerabilities.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS45.16% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2004-07-27
Last modified2026-06-16

Affected (8)

VendorProduct
avayaconverged communications server
avayaintegrated management
avayas8300
avayas8500
avayas8700
phpphp
redhatfedora core
trustixsecure linux

Public exploits

SourceTitleDate
exploit-dbPHP 4.x/5.0 - 'Strip_Tags()' Function Bypass2004-07-14

References

→ the Explorer  ·  watch your stack  ·  NVD