Security Advisory

CVE-2000-0967

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-01-22 05:00:00
Last updated 2024-08-08 05:37:32
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.