peter bassill · operator
$ cve CVE-2004-0490 JSON

CVE-2004-0490 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 4.5% (pctl 91)

Patch early

A public exploit exists.

Description

cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path option, which causes php to use the SCRIPT_FILENAME variable to find and execute a script instead of the PATH_TRANSLATED variable, which allows local users to execute arbitrary PHP code as other users via a URL that references the attacker's script after the user's script, which executes the attacker's script with the user's privileges, a different vulnerability than CVE-2004-0529.

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS4.47% — more likely to be exploited than 91% of all CVEs
On CISA KEVno
Public exploityes
Published2004-08-18
Last modified2026-06-16

Affected (1)

VendorProduct
cpanelcpanel

Public exploits

SourceTitleDate
exploit-dbcPanel 5 < 9 - Local Privilege Escalation2004-05-24

References

→ the Explorer  ·  watch your stack  ·  NVD