CVE

Id
9387  
CVE No.
CVE-2004-0959  
Status
Candidate  
Description
rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain MIME header that causes the "$_FILES" array to be modified.  
Phase
Assigned (20041013)  
Votes
None (candidate not yet proposed)  
Comments