CVE-2002-0081: Buffer Overflow
Published Mar 8, 2002
·Updated
Buffer overflows in (1) phpmimesplit in PHP 4.1.0, 4.1.1, and 4.0.6 and earlier, and (2) php3mimesplit in PHP 3.0.x allows remote attackers to execute arbitrary code via a multipart/form-data HTTP POST request when fileuploads is enabled.
Affected Software
4 affected components
PHP PHP=3.0
PHP PHP=4.1.0
PHP PHP=4.1.1
PHP PHP=4.0.6
Remediation
Patch Available
Event History
Mar 8, 2002
CVE Published
05:00 AM
Jun 25, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0081?
CVE-2002-0081 is considered critical due to its potential for remote code execution.
2
How do I fix CVE-2002-0081?
To fix CVE-2002-0081, upgrade to PHP version 4.1.2 or later, or 5.0.0 or later.
3
Who is affected by CVE-2002-0081?
CVE-2002-0081 affects PHP versions 3.0.x, 4.0.6, 4.1.0, and 4.1.1.
4
What kind of attack does CVE-2002-0081 enable?
CVE-2002-0081 enables remote attackers to execute arbitrary code via specially crafted HTTP POST requests.
5
Is CVE-2002-0081 still relevant today?
While CVE-2002-0081 is an older vulnerability, it remains relevant for legacy systems still using the affected PHP versions.