Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 23 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 22 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PHPRunner 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the dashboard name field. Attackers can paste a buffer of 10000 characters into the Name field during dashboard creation to trigger an application crash. | |
| Title | PHPRunner 10.1 Denial of Service via Dashboard Name Field | |
| First Time appeared |
Xlinesoft
Xlinesoft phprunner |
|
| Weaknesses | CWE-1260 | |
| CPEs | cpe:2.3:a:xlinesoft:phprunner:-:*:*:*:*:*:*:* cpe:2.3:a:xlinesoft:phprunner:10.1:*:*:*:*:*:*:* cpe:2.3:a:xlinesoft:phprunner:4.2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Xlinesoft
Xlinesoft phprunner |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-23T16:04:17.974Z
Reserved: 2026-03-22T12:53:14.849Z
Link: CVE-2019-25592
Updated: 2026-03-23T16:04:08.792Z
Status : Deferred
Published: 2026-03-22T14:16:25.830
Modified: 2026-04-16T16:19:50.757
Link: CVE-2019-25592
No data.
OpenCVE Enrichment
Updated: 2026-03-25T14:46:24Z