Product
php proxy php proxy
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2018-19785
CVE-2018-19784
CVE-2018-19458
CVE-2018-19246
<= 5.1.0
PHP-Proxy through 5.1.0 has Cross-Site Scripting (XSS) via the URL field in index.php.
all versions
The str_rot_pass function in vendor/atholn1600/php-proxy/src/helpers.php in PHP-Proxy 5.1.0 uses weak cryptography, which makes it
all versions
In PHP Proxy 3.0.3, any user can read files from the server without authentication due to an index.php?q=file:/// LFI URI, a diffe
all versions
PHP-Proxy 5.1.0 allows remote attackers to read local files if the default "pre-installed version" (intended for users who lack sh