PHPRunner 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the dashboard name field. Attackers can paste a buffer of 10000 characters into the Name field during dashboard creation to trigger an application crash.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 22 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PHPRunner 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the dashboard name field. Attackers can paste a buffer of 10000 characters into the Name field during dashboard creation to trigger an application crash. | |
| Title | PHPRunner 10.1 Denial of Service via Dashboard Name Field | |
| First Time appeared |
Xlinesoft
Xlinesoft phprunner |
|
| Weaknesses | CWE-1260 | |
| CPEs | cpe:2.3:a:xlinesoft:phprunner:-:*:*:*:*:*:*:* cpe:2.3:a:xlinesoft:phprunner:10.1:*:*:*:*:*:*:* cpe:2.3:a:xlinesoft:phprunner:4.2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Xlinesoft
Xlinesoft phprunner |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-22T13:38:30.411Z
Reserved: 2026-03-22T12:53:14.849Z
Link: CVE-2019-25592
No data.
Status : Received
Published: 2026-03-22T14:16:25.830
Modified: 2026-03-22T14:16:25.830
Link: CVE-2019-25592
No data.
OpenCVE Enrichment
Updated: 2026-03-23T09:46:26Z
Weaknesses