about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHP Microsoft Windows Shell Escape Functions Command Execution Vulnerability


Title PHP Microsoft Windows Shell Escape Functions Command Execution Vulnerability
Published 2004-06-07-12:00AM
Updated 2004-06-07-08:39PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery of this issue is credited to "Daniel Fabian" <d.fabian@sec-consult.com>. Discovery is also credited to 3APA3A.
Vulnerable  PHP PHP 4.3.5
PHP PHP 4.3.3
S.u.S.E. Linux Personal 9.0
S.u.S.E. Linux Personal 9.0 x86_64
Turbolinux Home
Turbolinux Turbolinux 10 F...
Turbolinux Turbolinux Desktop 10.0
Not Vulnerable  PHP PHP 4.3.7
Code   No exploit is required to leverage this issue. It has been reported that the following input passed to a vulnerable function will trigger this issue and execute the 'dir' command:

" || dir ||
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 09:42:20 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
php-nuke 2 www.yaowg. arab sex c www.quangu www.psych. sexy girl www.shajun 200 /compo news for c Trillian www.yzmoth maxcpm.inf WWw.ash bo video por news for c tiistsw.co www.1000oa 200+%252F% www.psych. 4.0.21 Rambha Nud X videos.c Www.Indias 200 /compo dahuawg.co sexy yango www.world Porno movi www.dhl-dh shop570710 ww xnxx.co remoteR2bb 1044 www.so188. media play fileup www.oklhc1 news for c blackberry PHP Group Thrisha se beb www.bustyw saxyflim free xxx m India+sax+ fireboard XXXPORN www.1000bj Wap.sexind