Total
706 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2000-0967 | 1 Php | 1 Php | 2024-11-20 | 10.0 HIGH | N/A |
PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs. | |||||
CVE-2000-0860 | 1 Php | 1 Php | 2024-11-20 | 5.0 MEDIUM | N/A |
The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables. | |||||
CVE-2000-0059 | 1 Php | 1 Php | 2024-11-20 | 10.0 HIGH | N/A |
PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands. | |||||
CVE-1999-0238 | 1 Php | 1 Php | 2024-11-20 | 10.0 HIGH | N/A |
php.cgi allows attackers to read any file on the system. | |||||
CVE-1999-0068 | 1 Php | 1 Php | 2024-11-20 | 7.5 HIGH | N/A |
CGI PHP mylog script allows an attacker to read any file on the target server. | |||||
CVE-1999-0058 | 1 Php | 1 Php | 2024-11-20 | 7.5 HIGH | N/A |
Buffer overflow in PHP cgi program, php.cgi allows shell access. |