CVE-2002-2309
php.exe in PHP 3.0 through 4.2.2, when running on Apache, does not terminate properly, which allows remote attackers to cause a denial of service via a direct request without arguments.
- Php
- = 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, 3.0.12, 3.0.13, 3.0.14, 3.0.15, 3.0.16, 3.0.17, 3.0.18, 4.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.5, 4.0.6, 4.0.7, 4.1.0, 4.1.1, 4.1.2, 4.2.0, 4.2.1, 4.2.2
- Fix
- Available
- CVSS 2.0
- 7.8 HIGH
- EPSS
- 4.1% (90th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2007-10-26
CVE-2002-2309 at NVD
1 known exploit for CVE-2002-2309
Proof-of-concept code and exploit modules indexed by Sploitus