CVE-2022-24953

The Crypt_GPG extension before 1.6.7 for PHP does not prevent additional options in GPG calls, which presents a risk for certain environments and GPG versions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pear:crypt_gpg:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-02-17 05:15

Updated : 2023-08-08 14:22


NVD link : CVE-2022-24953

Mitre link : CVE-2022-24953

CVE.ORG link : CVE-2022-24953


JSON object : View

Products Affected

pear

  • crypt_gpg
CWE
CWE-88

Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')