mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
117 lines
4.1 KiB
JSON
117 lines
4.1 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "cve@mitre.org",
|
|
"ID": "CVE-2004-1063",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver, allows local users to bypass safe_mode_exec_dir restrictions and execute commands outside of the intended safe_mode_exec_dir via shell metacharacters in the current directory name. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "12412",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/12412"
|
|
},
|
|
{
|
|
"name": "MDKSA-2005:072",
|
|
"refsource": "MANDRAKE",
|
|
"url": "http://www.mandriva.com/security/advisories?name=MDKSA-2005:072"
|
|
},
|
|
{
|
|
"name": "11964",
|
|
"refsource": "BID",
|
|
"url": "http://www.securityfocus.com/bid/11964"
|
|
},
|
|
{
|
|
"name": "php-safemodeexecdir-restriction-bypass(18511)",
|
|
"refsource": "XF",
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/18511"
|
|
},
|
|
{
|
|
"name": "http://www.php.net/release_4_3_10.php",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://www.php.net/release_4_3_10.php"
|
|
},
|
|
{
|
|
"name": "MDKSA-2004:151",
|
|
"refsource": "MANDRAKE",
|
|
"url": "http://www.mandriva.com/security/advisories?name=MDKSA-2004:151"
|
|
},
|
|
{
|
|
"name": "http://www.hardened-php.net/advisories/012004.txt",
|
|
"refsource": "MISC",
|
|
"url": "http://www.hardened-php.net/advisories/012004.txt"
|
|
},
|
|
{
|
|
"name": "CLA-2005:915",
|
|
"refsource": "CONECTIVA",
|
|
"url": "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000915"
|
|
},
|
|
{
|
|
"name": "GLSA-200412-14",
|
|
"refsource": "GENTOO",
|
|
"url": "http://www.gentoo.org/security/en/glsa/glsa-200412-14.xml"
|
|
},
|
|
{
|
|
"name": "20041215 Advisory 01/2004: Multiple vulnerabilities in PHP 4/5",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/384545"
|
|
},
|
|
{
|
|
"name": "HPSBMA01212",
|
|
"refsource": "HP",
|
|
"url": "http://www.securityfocus.com/advisories/9028"
|
|
},
|
|
{
|
|
"name": "USN-99-1",
|
|
"refsource": "UBUNTU",
|
|
"url": "https://www.ubuntu.com/usn/usn-99-1/"
|
|
}
|
|
]
|
|
}
|
|
} |