Description
The escapeshellcmd API function in PHP before 5.2.6 has unknown impact and context-dependent attack vectors related to "incomplete multibyte chars."
Remediation
References
Related Vulnerabilities
WordPress Plugin Cart66 Lite::WordPress Ecommerce SQL Injection (1.5.1.17)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-2488)
Oracle JRE CVE-2024-20926 Vulnerability (CVE-2024-20926)
IBM WebSEAL Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-4661)
Oracle Application Server CVE-2007-5524 Vulnerability (CVE-2007-5524)