vendor:
PHP
by:
rgod
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: PHP
Affected Version From: PHP <= 4.4.6
Affected Version To: PHP <= 4.4.6
Patch Exists: NO
Related CWE:
CPE: a:php:php:4.4.6
Platforms Tested: Windows 2000 SP3 EN
2007
PHP <= 4.4.6 mssql_connect() & mssql_pconnect() local buffer overflow
This exploit targets the mssql_connect() and mssql_pconnect() functions in PHP versions <= 4.4.6. It allows for local buffer overflow and can also bypass the safe_mode restriction. The exploit is specific to Windows 2000 SP3 EN with a SEH overwrite. It was created by rgod as a contribution to MOPB.
Mitigation:
Upgrade PHP to a version higher than 4.4.6.