AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-1019

HIGH · CVSS 10 EPSS 8.00%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-01-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-1019
Severity
HIGH
CVSS
10
EPSS
8.00%

Original NVD Description

The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbitrary code via untrusted data to the unserialize function that may trigger "information disclosure, double-free and negative reference index array underflow" results.