php: information disclosure and file upload vulnerabilities
Package(s):
php
CVE #(s):
Created:
October 6, 2004
Updated:
October 6, 2004
Description:
Versions of PHP prior to 4.3.9 suffer from vulnerabilities which can disclose the contents of random memory to an attacker and allow uploads of files to any location writable by the web server.