Description
Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL with a "stacked array assignment."
Remediation
References
Related Vulnerabilities
Apache version older than 1.3.39
WordPress Plugin Video Lead Form 'errMsg' Parameter Cross-Site Scripting (0.5)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-44040)
Drupal Core 9.0.0 Remote Code Execution (9.0.0)
IBM WebSEAL Improper Certificate Validation Vulnerability (CVE-2019-4150)