CVE-2002-0717

PHP 4.2.0 and 4.2.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an HTTP POST request with certain arguments in a multipart/form-data form, which generates an error condition that is not properly handled and causes improper memory to be freed.

Scoring

CVSS base score
0.17
EPSS probability
4.26%
Published
2002-07-23
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs