CVE-2020-7070


PHP parses encoded cookie names so malicious `__Host-` cookies can be sent

In PHP versions 7.2.x below 7.2.34, 7.3.x below 7.3.23 and 7.4.x below 7.4.11, when PHP is processing incoming HTTP cookie values, the cookie names are url-decoded. This may lead to cookies with prefixes like __Host confused with cookies that decode to such prefix, thus leading to an attacker being able to forge cookie which is supposed to be secure. See also CVE-2020-8184 for more information.



We have discovered 745,951 live websites that are affected by CVE-2020-7070.

Contact us to get more info




Affected Software

Product  PHP
Category Programming Languages
Vulnerable Versions
  • from 7.2 before 7.2.34
  • from 7.3 before 7.3.23
  • from 7.4 before 7.4.11
Total Vulnerable Versions507
Vulnerable Domains745,951 live websites (6.17% of PHP install base)


Common Weakness Enumeration


CWE-20 Improper Input Validation


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2020-7070 and the relative popularity of websites


Details

  • Published - Sep 29, 2020
  • Updated - Oct 20, 2021

Credits

  • Reported by fletchto99 at gmail dot com





Countries

United States173,148 websites



France253,426 websites
Russia73,084 websites
China24,014 websites
Germany19,638 websites
Italy14,712 websites
Poland14,413 websites
Japan13,012 websites
Spain12,729 websites
Belgium12,432 websites

TLDs

.com312,895 websites
.fr112,467 websites
.ru68,975 websites
.org33,634 websites
.net22,137 websites
.be13,787 websites
.de12,366 websites
.pl11,248 websites
.it10,904 websites
.nl8,052 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2020-7070 through included software libraries and plugins.



References


Websites affected by CVE-2020-7070

Top websites that are affected by CVE-2020-7070. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
***.*****.cz Czech Republic*,***
*.cn China*,***
***.*.cn China*,***
***.*****.pl Poland*,***
*******.com Germany*,***
*****.***.cn China*,***
***.*****.***.cn China*,***
*****.cn China*,***
***.*****.cn China*,***
***.*********.com China*,***
See full domain list