Vulnerabilities > CVE-1999-0068 - Unspecified vulnerability in PHP 1.0/2.0/2.0B10
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
CGI PHP mylog script allows an attacker to read any file on the target server.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | PHP/FI 1.0/FI 2.0/FI 2.0 b10 mylog/mlog Vulnerability. CVE-1999-0068. Remote exploit for php platform |
id | EDB-ID:19553 |
last seen | 2016-02-02 |
modified | 1997-10-19 |
published | 1997-10-19 |
reporter | Bryan Berg |
source | https://www.exploit-db.com/download/19553/ |
title | PHP/FI 1.0/FI 2.0/FI 2.0 b10 mylog/mlog Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | PHP_ARBITRARY_FILE_ACCESS.NASL |
description | The remote host is running PHP/FI. The remote version of this software contains a flaw in the files mylog.html/mlog.html that can allow a remote attacker to view arbitrary files on the remote host. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 15708 |
published | 2004-11-13 |
reporter | This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/15708 |
title | PHP < 3.0 mylog.html/mlog.html Arbitrary File Access |
code |
|