AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-0397

MEDIUM · CVSS 5 EPSS 11.53%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-03-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2010-0397
Severity
MEDIUM
CVSS
5
EPSS
11.53%

Original NVD Description

The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xmlrpc_decode_request function, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) and possibly have unspecified other impact via a crafted argument.