5
CVSSv2

CVE-2000-0860

Published: 14/11/2000 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The file upload capability in PHP versions 3 and 4 allows remote malicious users to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 3.0.1

php php 3.0.10

php php 3.0.5

php php 3.0.11

php php 3.0.12

php php 3.0.7

php php 3.0.8

php php 3.0.9

php php 1.0

php php 2.0

php php 3.0.13

php php 3.0.2

php php 4.0

php php 3.0.6

php php 2.0b10

php php 3.0

php php 3.0.3

php php 3.0.4