CVE-2008-7068

The dba_replace function in PHP 5.2.6 and 4.x allows context-dependent attackers to cause a denial of service (file truncation) via a key with the NULL byte. NOTE: this might only be a vulnerability in limited circumstances in which the attacker can modify or add database entries but does not have permissions to truncate the file.


We have discovered 59,809 live websites that are affected by CVE-2008-7068.

Run a Free Instant Scan




Affected Software

Product  PHP
Category Programming Languages
Vulnerable Domains59,809 live websites (0.77% of PHP install base)
Vulnerable Versions
  • from 4 through 5
  • from 5.2.6 through 5.2.6
Vulnerable Versions Count1 versions ( 0.20% of all versions)



Details

  • Published - Aug 25, 2009
  • Updated - Aug 7, 2024

Website Distribution by Country

Number of websites using CVE-2008-7068
United States5,569 websites



Taiwan16,585 websites
Germany8,689 websites
Korea, South5,633 websites
Hungary3,483 websites
France3,276 websites
Russia2,260 websites
Japan1,983 websites
Italy1,410 websites

Website Distribution by TLD

Number of websites using CVE-2008-7068
.com24,177 websites
.de7,833 websites
.info3,471 websites
.net2,698 websites
.ru1,942 websites
.org1,493 websites
.cz1,078 websites
.fr949 websites
.it838 websites
.at734 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2008-7068

Top websites that are affected by CVE-2008-7068. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
**********.*****.de Germany*,***
***********.jp Japan**,***
****.info France**,***
******.com Taiwan**,***
*********.com United States**,***
*****.*****.**.kr Korea, South**,***
**********.com Taiwan**,***
******.com Taiwan**,***
**.*****.**********.com United States**,***
*****.*******.**.kr **,***
See full domain list

FAQ

A total of 59,809 websites have been identified as vulnerable to CVE-2008-7068, based on global website indexing conducted by WebTechSurvey.
The PHP is affected by the CVE-2008-7068 vulnerability.
PHP versions up to and including 5.2.6 are vulnerable to CVE-2008-7068.