Description
The addcslashes function in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 allows context-dependent attackers to obtain sensitive information (memory contents) by causing a userspace interruption of an internal function, related to the call time pass by reference feature.
Remediation
References
Related Vulnerabilities
WordPress Plugin Lockdown WP Admin Unspecified Vulnerability (1.1.2)
IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4691)
Drupal 7PK - Security Features Vulnerability (CVE-2016-3168)
MediaWiki Resource Management Errors Vulnerability (CVE-2015-8002)
WordPress Plugin WP Advanced Comment Cross-Site Scripting (0.10)