2.1
CVSSv2

CVE-2002-0121

Published: 25/03/2002 Updated: 11/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

PHP 4.0 up to and including 4.1.1 stores session IDs in temporary files whose name contains the session ID, which allows local users to hijack web connections.

Vulnerable Product Search on Vulmon Subscribe to Product

php php 4.0.4

php php 4.0.5

php php 4.0.6

php php 4.1.0

php php 4.1.2