PHP Deserialization of Untrusted Data Vulnerability - CVE-2018-19396 - Vulnerability Database

PHP Deserialization of Untrusted Data Vulnerability - CVE-2018-19396

High
Reference: CVE-2018-19396
Title: PHP Deserialization of Untrusted Data Vulnerability
Overview:

ext/standard/var_unserializer.c in PHP 5.x through 7.1.24 allows attackers to cause a denial of service (application crash) via an unserialize call for the com dotnet or variant class.