Description

In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, erroneous parsing of multipart form data contained in an HTTP POST request could lead to legitimate data not being processed. This could lead to malicious attacker able to control part of the submitted data being able to exclude portion of other data, potentially leading to erroneous application behavior.

INFO

Published Date :

2024-10-08T03:35:02.673Z

Last Modified :

2025-11-03T22:33:05.003Z

Source :

php
AFFECTED PRODUCTS

The following products are affected by CVE-2024-8925 vulnerability.

Vendors Products
Php
  • Php
Redhat
  • Enterprise Linux

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact