
CVE-2000-0059 – PHP 3.0.13 - 'Safe_mode' Failure
https://notcve.org/view.php?id=CVE-2000-0059
04 Jan 2000 — PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands. • https://www.exploit-db.com/exploits/19708 •

CVE-1999-0068 – PHP/FI 1.0/FI 2.0/FI 2.0 b10 - mylog/mlog
https://notcve.org/view.php?id=CVE-1999-0068
19 Oct 1997 — CGI PHP mylog script allows an attacker to read any file on the target server. • https://www.exploit-db.com/exploits/19553 •

CVE-1999-0238 – PHP PHP/fi 2.0 - Directory Traversal
https://notcve.org/view.php?id=CVE-1999-0238
01 Aug 1997 — php.cgi allows attackers to read any file on the system. • https://www.exploit-db.com/exploits/20567 •

CVE-1999-0058
https://notcve.org/view.php?id=CVE-1999-0058
17 Apr 1997 — Buffer overflow in PHP cgi program, php.cgi allows shell access. • http://www.securityfocus.com/bid/712 •