National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

Vulnerability Change Record for CVE-2015-8866

Change History

Modified Analysis - 5/24/2016 10:36:35 AM

Action Type Old Value New Value
Changed Reference Type
https://bugs.php.net/bug.php?id=64938 No Types Assigned
https://bugs.php.net/bug.php?id=64938 Advisory
Added CWE
NVD-CWE-Other
Added CVSS V2
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Added CVSS V3
AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Added Evaluator Description
<a href="http://cwe.mitre.org/data/definitions/611.html">CWE-611: Improper Restriction of XML External Entity Reference ('XXE')</a>
Added CPE Configuration
Configuration 1
     OR
          *cpe:2.3:a:php:php:5.6.0:*:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:beta4:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:beta3:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:beta2:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:beta1:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:alpha5:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:alpha4:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:alpha3:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:alpha2:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.0:alpha1:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.4:*:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.3:*:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.2:*:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.1:*:*:*:*:*:*:*
          *cpe:2.3:a:php:php:5.6.5:*:*:*:*:*:*:* (and previous)
          *cpe:2.3:a:php:php:5.5.21:*:*:*:*:*:*:* (and previous)