CVE
- Id
- 1637
- CVE No.
- CVE-2000-0059
- Status
- Candidate
- Description
- PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands.
- Phase
- Proposed (20000125)
- Votes
- ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey
- Comments
- Frech> XF:php3-popen-execute(3900) | Christey> CONFIRM:http://www.php.net/ChangeLog.php3 | Section dated January 11, 2000 says: "Fix safe-mode problem in | popen() (Kristian)"