📦

php-buildpack

Vendor: cloudfoundry

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 0.38% Exploit Prob.
Latest CVE CVE-2016-6639 Sep 18

Security Vulnerability Index

Page 1 / 1
7.5 CVSS
CVE-2016-6639
Exploit Found

Cloud Foundry PHP Buildpack (aka php-buildpack) before 4.3.18 and PHP Buildpack Cf-release before 242, as used in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.38 and 1.7.x before 1.7.19 and other products, place the .profile file in the htdocs directory, which might allow remote attackers to obtain sensitive information via an HTTP GET request for this file.

EPSS: 0.38%