CVE-2017-5358: Easycom-Aura Easycom For PHP

Critical severity, CVSS 9.8. EPSS: 12.1% chance of exploitation in the next 30 days.

Stack-based buffer overflows in php_Easycom5_3_0.dll in EasyCom for PHP 4.0.0.29 allows remote attackers to execute arbitrary code via the server argument to the (1) i5_connect, (2) i5_pconnect, or (3) i5_private_connect API function.

Affected products

Published 2017-03-15. Last modified 2026-06-17.