Record summary

CVE-2000-0967 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.

Description

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBPHP 3.0/4.0 - Error Logging Format StringExploitDB exploitby anonymousNot analyzed1 file
ExploitDB

PoC details
ExploitDBPHP 3.0.16/4.0.2 - Remote Format OverflowExploitDB exploitby GneisenauNot analyzed1 file
ExploitDB

PoC details

References

9