Description
CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2 allows remote attackers to inject arbitrary FTP commands via CRLF sequences in the parameters to earlier FTP commands.
Remediation
References
Related Vulnerabilities
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (6.6.4)
MySQL CVE-2021-35640 Vulnerability (CVE-2021-35640)
MediaWiki Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2021-41799)
MediaWiki Improper Input Validation Vulnerability (CVE-2017-8814)
XWiki Uncontrolled Resource Consumption Vulnerability (CVE-2024-21651)