CVE
- Id
- 9387
- CVE No.
- CVE-2004-0959
- Status
- Candidate
- Description
- rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain MIME header that causes the "$_FILES" array to be modified.
- Phase
- Assigned (20041013)
- Votes
- None (candidate not yet proposed)
- Comments