Vulnerabilities > CVE-2003-0172 - Buffer Overflow vulnerability in PHP 4.3.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote attackers to cause a crash and possibly execute arbitrary code via a long filename argument.
Exploit-Db
description | PHP <= 4.3.7 openlog() Buffer Overflow Exploit. CVE-2003-0172. Remote exploit for windows platform |
id | EDB-ID:729 |
last seen | 2016-01-31 |
modified | 2004-12-28 |
published | 2004-12-28 |
reporter | The Warlock [BhQ] |
source | https://www.exploit-db.com/download/729/ |
title | PHP <= 4.3.7 openlog Buffer Overflow Exploit |
References
- http://marc.info/?l=bugtraq&m=104878149020152&w=2
- http://marc.info/?l=bugtraq&m=104931415307111&w=2
- http://www.osvdb.org/2113
- http://www.securityfocus.com/archive/1/316583
- http://www.securityfocus.com/archive/1/385238
- http://www.securityfocus.com/bid/7210
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11637