Lucene search

K
cve[email protected]CVE-2002-0081
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2002-0081

2002-06-2504:00:00
web.nvd.nist.gov
88
cve-2002-0081
buffer overflow
php
remote attack
multipart/data
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.4 High

AI Score

Confidence

Low

0.937 High

EPSS

Percentile

99.1%

Buffer overflows in (1) php_mime_split in PHP 4.1.0, 4.1.1, and 4.0.6 and earlier, and (2) php3_mime_split in PHP 3.0.x allows remote attackers to execute arbitrary code via a multipart/form-data HTTP POST request when file_uploads is enabled.

Affected configurations

NVD
Node
phpphpMatch3.0
OR
phpphpMatch4.0.6
OR
phpphpMatch4.1.0
OR
phpphpMatch4.1.1

References

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.4 High

AI Score

Confidence

Low

0.937 High

EPSS

Percentile

99.1%