Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://marc.theaimsgroup.com/?l=bugtraq&m=109534848430404 http://marc.theaimsgroup.com/?l=bugtraq&m=109648426331965 http://www.vuxml.org/freebsd/562a3fdf-16d6-11d9-bc4a-000c41e2cdad.html
Insight
The following packages are affected:
php4
php4-cgi
mod_php4
php5
php5-cgi
mod_php5
PHP has a vulnerability that allows an attacker to upload files to arbitrary locations, which in turn may allow the attacker to execute arbitrary code.
Severity
Classification
-
CVE CVE-2004-0959 -
CVSS Base Score: 2.1
AV:L/AC:L/Au:N/C:N/I:P/A:N
Related Vulnerabilities