Lucene search

K
cvelistMitreCVELIST:CVE-2004-0594
HistoryJul 16, 2004 - 4:00 a.m.

CVE-2004-0594

2004-07-1604:00:00
mitre
www.cve.org
1

7.4 High

AI Score

Confidence

Low

0.613 Medium

EPSS

Percentile

97.8%

The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when register_globals is enabled, allows remote attackers to execute arbitrary code by triggering a memory_limit abort during execution of the zend_hash_init function and overwriting a HashTable destructor pointer before the initialization of key data structures is complete.

References

7.4 High

AI Score

Confidence

Low

0.613 Medium

EPSS

Percentile

97.8%