Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2002-0985

Argument injection vulnerability in the mail function for PHP 4.x to 4.2.2 may allow attackers to bypass safe mode restrictions and modify command line arguments to the MTA (e.g. sendmail) in the 5th argument to mail(), altering MTA behavior and possibly executing commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 79.8%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2002-0985
  • Openpkg » Openpkg » Version: 1.1
    cpe:2.3:a:openpkg:openpkg:1.1
  • Openpkg » Openpkg » Version: 1.2
    cpe:2.3:a:openpkg:openpkg:1.2
  • Php » Php » Version: 4.0
    cpe:2.3:a:php:php:4.0
  • Php » Php » Version: 4.0.0
    cpe:2.3:a:php:php:4.0.0
  • Php » Php » Version: 4.0.1
    cpe:2.3:a:php:php:4.0.1
  • Php » Php » Version: 4.0.2
    cpe:2.3:a:php:php:4.0.2
  • Php » Php » Version: 4.0.3
    cpe:2.3:a:php:php:4.0.3
  • Php » Php » Version: 4.0.4
    cpe:2.3:a:php:php:4.0.4
  • Php » Php » Version: 4.0.5
    cpe:2.3:a:php:php:4.0.5
  • Php » Php » Version: 4.0.6
    cpe:2.3:a:php:php:4.0.6
  • Php » Php » Version: 4.0.7
    cpe:2.3:a:php:php:4.0.7
  • Php » Php » Version: 4.1.0
    cpe:2.3:a:php:php:4.1.0
  • Php » Php » Version: 4.1.1
    cpe:2.3:a:php:php:4.1.1
  • Php » Php » Version: 4.1.2
    cpe:2.3:a:php:php:4.1.2
  • Php » Php » Version: 4.1.3
    cpe:2.3:a:php:php:4.1.3
  • Php » Php » Version: 4.2
    cpe:2.3:a:php:php:4.2
  • Php » Php » Version: 4.2.0
    cpe:2.3:a:php:php:4.2.0
  • Php » Php » Version: 4.2.1
    cpe:2.3:a:php:php:4.2.1
  • Php » Php » Version: 4.2.2
    cpe:2.3:a:php:php:4.2.2


Contact Us

Shodan ® - All rights reserved