CVE-1999-0238

CVSS 2.0 Score 10 of 10 (high)

Details

Published Aug 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-0238 is a vulnerability affecting php.cgi, a Common Gateway Interface (CGI) script used to process PHP code. This issue grants attackers the ability to read any file on the system, posing a significant risk to data confidentiality. Successful exploitation of this vulnerability may result in unauthorized access to sensitive information, potentially leading to further security breaches. The root cause is a lack of proper file access restrictions in php.cgi. This vulnerability was discovered in 1999 and has since been mitigated through updates and patches. It serves as an important reminder of the significance of regularly maintaining and updating software to protect against cybersecurity threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • PHP: Hypertext Preprocessor

Affected Vendors

  • Php