CVE-2007-3799 describes a vulnerability in the session_start function within PHP versions 4.x up to 4.4.7 and 5.x up to 5.2.3. This flaw allows remote attackers to inject arbitrary attributes into session cookies due to improper encoding or filtering of special characters originating from PATH_INFO, session_id, or session_start. Rated with a CVSS score of 4.3, this vulnerability has a network attack vector and medium attack complexity, potentially leading to partial integrity impact. The EPSS score of 0.09249 indicates a low probability of exploitation, and its FAUCET Risk Score is 82/100. While not listed in CISA's KEV catalog, an ExploitDB entry (EDB-30130) exists for HTTP Response Header Injection in PHP 5.2.3. There is no evidence of active exploitation, Metasploit modules, Nuclei templates, or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.0CPE matchmatch criteria | cpe:2.3:a:php:php:4.0:beta_4_patch1:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:a:php:php:4.0:beta1:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:a:php:php:4.0:beta2:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:a:php:php:4.0:beta3:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:a:php:php:4.0:beta4:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.