Vulnerabilities > CVE-2002-0484 - Unspecified vulnerability in PHP
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
move_uploaded_file in PHP does not does not check for the base directory (open_basedir), which could allow remote attackers to upload files to unintended locations on the system.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | Php
| 36 |
Exploit-Db
description | PHP 3.0.x/4.x Move_Uploaded_File Open_Basedir Circumvention Vulnerability. CVE-2002-0484. Local exploit for php platform |
id | EDB-ID:21347 |
last seen | 2016-02-02 |
modified | 2002-03-17 |
published | 2002-03-17 |
reporter | Tozz |
source | https://www.exploit-db.com/download/21347/ |
title | PHP 3.0.x/4.x Move_Uploaded_File Open_Basedir Circumvention Vulnerability |