CVE-2004-0530
 
Severity Score
7.2
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting shared libraries into the appropriate path.
El paquete PHP en Slackware 8.1, 9.0 y 9.1, cuando se enlaza con una librería estática, incluye /tmp en la ruta de búsqueda, lo que permite a usuarios locales ejecutar código de su elección como el usuario PHP insertando librerías compartidas en la ruta apropiada.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2004-06-04 CVE Reserved
- 2004-06-08 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/11760 | Third Party Advisory | |
http://www.securityfocus.com/bid/10461 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16310 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.419765 | 2017-07-11 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Slackware Search vendor "Slackware" | Slackware Linux Search vendor "Slackware" for product "Slackware Linux" | 8.1 Search vendor "Slackware" for product "Slackware Linux" and version "8.1" | - |
Safe
| ||||||
Slackware Search vendor "Slackware" | Slackware Linux Search vendor "Slackware" for product "Slackware Linux" | 9.0 Search vendor "Slackware" for product "Slackware Linux" and version "9.0" | - |
Safe
| ||||||
Slackware Search vendor "Slackware" | Slackware Linux Search vendor "Slackware" for product "Slackware Linux" | 9.1 Search vendor "Slackware" for product "Slackware Linux" and version "9.1" | - |
Safe
|