vendor:
PHP
by:
rgod
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: PHP
Affected Version From: PHP 4.4.6
Affected Version To: PHP 4.4.6
Patch Exists: NO
Related CWE:
CPE: a:php:php:4.4.6
Platforms Tested:
2007
PHP crack_opendict() Local Buffer Overflow
This is a proof of concept exploit for the crack_opendict() function in PHP 4.4.6. It demonstrates a local buffer overflow vulnerability, using the win2k sp3 version with the SEH overwrite method. The exploit is designed to be launched from the command line.
Mitigation:
To mitigate this vulnerability, it is recommended to update to a patched version of PHP that addresses this issue.