CBL Mariner 2.0 Security Update: php (CVE-2025-1735)
Discription

The version of php installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2025-1735 advisory. In PHP versions:8.1. before 8.1.33, 8.2. before 8.2.29, 8.3. before 8.3.23, 8.4. pgsql and pdo_pgsql escaping functions do not check if the underlying quoting functions returned errors. This could cause crashes if Postgres server rejects the string as invalid. (CVE-2025-1735) Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number. File data…Read More
References
Back to Main