These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2018-19518 is a command-argument injection issue in the University of Washington IMAP Toolkit 2007f on UNIX. In affected paths, untrusted IMAP server names can be passed into an rsh-style command without proper argument protection. If the environment uses a replacement program with different argument semantics, that can turn into arbitrary OS command execution. CISA’s republished advisory ties the iss [truncated]
CVE-2018-17082 is a cross-site scripting (XSS) issue in PHP's Apache2 component when handling the body of a Transfer-Encoding: chunked request. The source advisory says the bucket brigade is mishandled in php_handler in sapi/apache2handler/sapi_apache2.c. In the supplied advisory context, the issue is associated with Festo Didactic SE MES PC systems that used the affected PHP stack. The CVSS v3.0 vector p [truncated]
CVE-2018-14883 is a PHP EXIF parsing vulnerability mapped by CISA’s Festo Didactic SE MES PC advisory. The issue can lead to a heap-based buffer over-read in exif_thumbnail_extract, with a CVSS 3.0 score of 7.5 and primary availability impact. Festo’s remediation notes indicate Factory Control Panel replaces XAMPP on affected MES PCs and includes fixes.
CVE-2018-14851 is a denial-of-service issue in PHP's EXIF parsing path. The vulnerable function is exif_process_IFD_in_MAKERNOTE in ext/exif/exif.c, and the advisory describes an out-of-bounds read that can crash the application when a crafted JPEG file is processed. In the supplied CISA CSAF record, the issue is associated with Festo Didactic SE MES PC, with a vendor remediation pointing to Factory Contr [truncated]
CVE-2018-12882 is a critical memory-corruption issue in PHP's EXIF handling. The supplied advisory text says exif_read_from_impl in ext/exif/exif.c can trigger a use-after-free in exif_read_from_file because it closes a stream it does not own, and that the vulnerable path is reachable through exif_read_data. In the supplied CISA CSAF mapping, the issue is associated with Festo Didactic SE MES PC systems t [truncated]
CVE-2016-5385 is the classic PHP "httpoxy" issue: if untrusted client input is allowed to influence the HTTP_PROXY environment variable, an attacker can steer outbound HTTP requests through an arbitrary proxy. In the supplied Festo Didactic MES PC advisory, the vendor maps the issue to deployments that use bundled PHP/XAMPP components and recommends replacing XAMPP with Factory Control Panel, which includes fixes.
CVE-2016-3078 is a critical integer-overflow issue in PHP's zip extension, affecting the ZipArchive class methods getFromIndex and getFromName. The supplied CISA CSAF advisory maps the issue to Festo Didactic SE MES PC and states that Festo’s Factory Control Panel replacement for XAMPP on MES PCs includes fixes. Because the flaw is remotely reachable and rated CVSS 9.8 in the source record, affected deplo [truncated]
CVE-2015-2787 is a critical PHP use-after-free vulnerability that can allow remote code execution when crafted data reaches unserialize handling. The supplied CISA CSAF source republishes the issue in the context of Festo Didactic SE MES PC and points to a vendor replacement/fix path.
CVE-2015-2348 is a critical file-handling flaw in PHP's move_uploaded_file implementation. A crafted pathname containing a NUL byte can be truncated, which may let an attacker bypass intended extension restrictions and create a file under an unexpected name. The supplied advisory corpus also notes that this is an incomplete fix for CVE-2006-7243 and maps the issue to Festo Didactic SE's MES PC advisory context.
CVE-2015-2301 is a critical use-after-free vulnerability in PHP’s Phar archive rename handling. The supplied advisory maps the issue to Festo Didactic SE MES PC deployments and directs customers to replace XAMPP with Factory Control Panel to obtain a fixed version. Remote attackers may be able to trigger denial of service and potentially broader impact where vulnerable PHP versions are present.
CVE-2014-9709 is a critical remote denial-of-service issue in GIF parsing code used by GD and PHP. In the supplied CISA CSAF advisory for Festo Didactic SE MES PC, a crafted GIF can be mishandled by gdImageCreateFromGif, leading to a buffer over-read and application crash. The vendor remediation points to Factory Control Panel as the replacement for XAMPP on MES PCs, indicating that the affected deploymen [truncated]
CVE-2014-9705 describes a heap-based buffer overflow in PHP’s enchant_broker_request_dict function that can let a remote attacker execute arbitrary code when multiple dictionaries are created. In the supplied CISA CSAF source, the CVE is republished in an advisory for Festo Didactic SE MES PC, with Festo directing users to obtain the current Factory Control Panel version that includes fixes. The practical [truncated]
CVE-2013-6501 is a PHP SOAP configuration weakness that uses /tmp as the default soap.wsdl_cache_dir in php.ini-production and php.ini-development through PHP 5.6.7. Because cached WSDL filenames are predictable, a local user can interfere with get_sdl processing and drive WSDL injection risk. In the provided CISA/Festo advisory context, this issue is tied to Festo Didactic SE MES PC, and the vendor remed [truncated]
CVE-2019-11050 is a PHP EXIF parsing out-of-bounds read that can disclose memory content or crash the affected process. In the supplied Festo advisory corpus, the issue is mapped to MES PC environments that used XAMPP, with remediation pointing to a replacement Factory Control Panel that includes fixes.
CVE-2019-11049 is described in the supplied advisory as a PHP memory-corruption issue on Windows that can lead to a double-free when custom headers supplied to mail() are lowercase. In the Festo Didactic SE MES PC advisory bundle, the recommended remediation is to move affected systems to the current Factory Control Panel replacement and obtain it through Festo support.
CVE-2019-11046 is a medium-severity information-disclosure issue in PHP’s bcmath extension. In affected PHP versions, a crafted string containing characters treated as numeric by the operating system but not as ASCII digits can cause the extension to read beyond allocated space, potentially exposing memory contents. The CISA-republished Festo Didactic SE MES PC advisory ties the issue to the product envir [truncated]
CVE-2019-11045 covers a PHP DirectoryIterator issue where filenames containing an embedded NUL byte can be treated as ending at that byte. In applications that rely on path validation before access, this can undermine access controls and expose files that should remain unreadable. The Festo Didactic SE MES PC advisory ties the issue to MES PC deployments and points operators to a replacement Factory Contr [truncated]
CISA’s advisory maps CVE-2019-11044 to Festo Didactic SE MES PC systems. The underlying issue is in PHP on Windows: the link() function can accept filenames with an embedded NUL byte and treat the string as ending there, which can defeat application path checks. For the affected MES PC deployment, Festo directs customers to replace XAMPP with Factory Control Panel and contact technical support for the cur [truncated]