← Back

Linux Enterprise Module For Web Scripting

linux_enterprise_module_for_web_scripting

Vendor: Suse • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Php
Suse
3Linux Enterprise Module For Web Scripting
Linux Enterprise Software Development KitPhp
May 13, 2026
Jun 8, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-6833.
4Canonical
OpensusePhp+1 more
6Leap
Linux Enterprise Module For Web ScriptingLinux Enterprise Software Development Kit+3 more
May 6, 2026
May 22, 2016
N/A· v4
9.6 CRITICAL· v3
6.8 MEDIUM· v2
ext/libxml/libxml.c in PHP before 5.5.22 and 5.6.x before 5.6.6, when PHP-FPM is used, does not isolate each thread from libxml_disable_entity_loader changes in other threads, which allows remote attackers to conduct XML...Show more
ext/libxml/libxml.c in PHP before 5.5.22 and 5.6.x before 5.6.6, when PHP-FPM is used, does not isolate each thread from libxml_disable_entity_loader changes in other threads, which allows remote attackers to conduct XML External Entity (XXE) and XML Entity Expansion (XEE) attacks via a crafted XML document, a related issue to CVE-2015-5161.Show less