Filtered by vendor Pear Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2006-0869 1 Pear 1 Pear Liveuser 2025-04-03 N/A
Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Repository (PEAR) LiveUser 0.16.8 and earlier allows remote attackers to determine file existence, and possibly delete arbitrary files with short pathnames or possibly read arbitrary files, via a .. (dot dot) in the store_id value of a cookie.
CVE-2022-24953 1 Pear 1 Crypt Gpg 2024-11-21 5.3 Medium
The Crypt_GPG extension before 1.6.7 for PHP does not prevent additional options in GPG calls, which presents a risk for certain environments and GPG versions.