10
CVSSv2

CVE-2000-0059

Published: 04/01/2000 Updated: 10/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote malicious users to execute commands.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 3.0

php php 3.0.1

php php 3.0.10

php php 3.0.3

php php 3.0.4

php php 3.0.5

php php 3.0.6

php php 3.0.11

php php 3.0.13

php php 3.0.8

php php 3.0.12

php php 3.0.2

php php 3.0.7

php php 3.0.9

Exploits

source: wwwsecurityfocuscom/bid/911/info PHP Version 30 is an HTML-embedded scripting language Much of its syntax is borrowed from C, Java and Perl with a couple of unique PHP-specific features thrown in The goal of the language is to allow web developers to write dynamically generated pages quickly Because it runs on a webserver and ...