PT-2004-1417 · Php+1 · Php+1

Published

2004-09-01

·

Updated

2017-10-10

·

CVE-2004-0263

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions PHP versions prior to 4.3.4 in Apache 1.x and 2.x (mod php)
Description The issue allows remote attackers to obtain sensitive information due to the leakage of global variables between virtual hosts handled by the same Apache child process but with different settings.
Recommendations For PHP versions prior to 4.3.4, consider updating to a version that addresses this issue to prevent the leakage of global variables between virtual hosts.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0263

Affected Products

Apache
Php