Vulnerabilities > CVE-2004-0490 - Local Privilege Escalation vulnerability in cPanel

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
cpanel
exploit available

Summary

cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path option, which causes php to use the SCRIPT_FILENAME variable to find and execute a script instead of the PATH_TRANSLATED variable, which allows local users to execute arbitrary PHP code as other users via a URL that references the attacker's script after the user's script, which executes the attacker's script with the user's privileges, a different vulnerability than CVE-2004-0529.

Exploit-Db

descriptioncPanel 5-9 Local Privilege Escalation Vulnerability. CVE-2004-0490. Local exploit for linux platform
idEDB-ID:24141
last seen2016-02-02
modified2004-05-24
published2004-05-24
reporterRob Brown
sourcehttps://www.exploit-db.com/download/24141/
titlecPanel 5-9 - Local Privilege Escalation Vulnerability