vendor:
PHP
by:
FB1H2S
7,5
CVSS
HIGH
Local Exploit
119
CWE
Product Name: PHP
Affected Version From: 5.3.4
Affected Version To: 5.3.4
Patch Exists: YES
Related CWE: N/A
CPE: a:php:php:5.3.4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft XP Pro 2002 SP2
2012
PHP 5.3.4 Win Com Module Com_sink Local Exploit
This exploit is a local exploit for PHP 5.3.4 Win Com Module Com_sink. It is a 0-day exploit tested on Microsoft XP Pro 2002 SP2. It uses a buffer overflow to execute a shellcode which displays an alert box. The exploit is written by Rahul Sasi and more details can be found at http://www.garage4hackers.com/blogs/8/web-app-remote-code-execution-via-scripting-engines-part-1-local-exploits-php-0-day-394/.
Mitigation:
The user should update to the latest version of PHP 5.3.4 and apply the necessary security patches.