CVE-2002-2029

CVE-2002-2029

CVE-2002-2029 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arbitrary files and possibly execute arbitrary programs via an HTTP request for php.exe with a filename in the query string.

Learn more about our Cis Benchmark Audit For Apache Http Server.