Lucene search

K
cvelistMitreCVELIST:CVE-2002-0253
HistoryMay 03, 2002 - 4:00 a.m.

CVE-2002-0253

2002-05-0304:00:00
mitre
www.cve.org

6.4 Medium

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

79.1%

PHP, when not configured with the β€œdisplay_errors = Off” setting in php.ini, allows remote attackers to obtain the physical path for an include file via a trailing slash in a request to a directly accessible PHP program, which modifies the base path, causes the include directive to fail, and produces an error message that contains the path.

6.4 Medium

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

79.1%

Related for CVELIST:CVE-2002-0253