Integer overflow in the gdImageCrop function in ext/gd/gd.c in PHP 5.5.x before 5.5.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an imagecrop function call with a large x dimension value, leading to a heap-based buffer overflow.
We have discovered 1,071,915 live websites that are affected by CVE-2013-7226.
Product | |
Category | Programming Languages |
Vulnerable Domains | 1,071,915 live websites (12.28% of PHP install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 171 versions ( 31.26% of all versions) |
![]() | 270,673 websites |
![]() | 116,652 websites |
![]() | 108,648 websites |
![]() | 80,665 websites |
![]() | 68,663 websites |
![]() | 65,348 websites |
![]() | 42,316 websites |
![]() | 38,198 websites |
![]() | 20,870 websites |
.com | 470,381 websites |
.ru | 102,198 websites |
.de | 62,019 websites |
.net | 43,067 websites |
.nl | 29,066 websites |
.org | 26,481 websites |
.fr | 22,165 websites |
.jp | 18,877 websites |
.info | 14,889 websites |
.cz | 13,802 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*****.***********.com | ![]() | *** | |
**********.com | ![]() | *** | |
************.***.ar | ![]() | *,*** | |
******************.com | ![]() | *,*** | |
***.org | ![]() | *,*** | |
****.com | ![]() | *,*** | |
********.com | ![]() | *,*** | |
*******.org | ![]() | *,*** | |
****.***********.de | ![]() | *,*** | |
*************.com | ![]() | *,*** |
FAQ