Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2002-0985
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2002-0985

Description:
Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.

CVE Status:
Entry

References:

XF

SUSE

REDHAT

OSVDB
  2111

MANDRAKE

DEBIAN

CONECTIVA

CALDERA

BUGTRAQ


Return to the previous page.