Loading
Integer overflow in PHP 4.4.4 and earlier allows remote context-dependent attackers to execute arbitrary code via a long string to the unserialize function, which triggers the overflow in the ZVAL reference counter.
Use Php vendor hub and Php product page to widen CVE-2007-1286 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-11235, CVE-2025-14180 and CVE-2025-14178 for nearby disclosures in the same product family.