Looking for the vulnerability index of Invicti's legacy products?
PHP Use of Externally-Controlled Format String Vulnerability - CVE-2009-0754 - Vulnerability Database

PHP Use of Externally-Controlled Format String Vulnerability - CVE-2009-0754

Low
Reference: CVE-2009-0754
Title: PHP Use of Externally-Controlled Format String Vulnerability
Overview:

PHP 4.4.4 5.1.6 and other versions when running on Apache allows local users to modify behavior of other sites hosted on the same web server by modifying the mbstring.func_overload setting within .htaccess which causes this setting to be applied to other virtual hosts on the same server.