CVE-2003-0442
published 2003-07-24CVE-2003-0442: Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to…
PriorityP422medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EXPLOIT
EPSS
6.74%
93.2th percentile
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| php | php | <= 4.3.1 | — |
| redhat | linux | — | — |
| redhat | linux | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Look for unsanitized or malformed PHPSESSID values in URI query strings, particularly those containing HTML/script injection characters such as '">' or '<script>' ↗
- →Flag requests where the PHPSESSID parameter contains characters inconsistent with a valid session ID (e.g., quotes, angle brackets, or script tags) ↗
- ·The vulnerability is only exploitable when session.use_trans_sid is enabled in PHP configuration (transparent SID support). PHP versions before 4.3.2 are affected. ↗
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_redhat4.3MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xx7m-rfgv-w2gg: Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4
ghsa_unreviewed·2022-04-29
CVE-2003-0442 [MEDIUM] GHSA-xx7m-rfgv-w2gg: Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
Red Hat
security flaw
vendor_redhat·2003-05-11·CVSS 4.3
CVE-2003-0442 [MEDIUM] security flaw
security flaw
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
No detection rules found.
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000691http://marc.info/?l=bugtraq&m=105449314612963&w=2http://marc.info/?l=bugtraq&m=105760591228031&w=2http://shh.thathost.com/secadv/2003-05-11-php.txthttp://www.ciac.org/ciac/bulletins/n-112.shtmlhttp://www.debian.org/security/2003/dsa-351http://www.mandriva.com/security/advisories?name=MDKSA-2003:082http://www.osvdb.org/4758http://www.redhat.com/support/errata/RHSA-2003-204.htmlhttp://www.securityfocus.com/bid/7761http://www.securitytracker.com/id?1008653http://www.turbolinux.co.jp/security/2003/TLSA-2003-47j.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/12259https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A485http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000691http://marc.info/?l=bugtraq&m=105449314612963&w=2http://marc.info/?l=bugtraq&m=105760591228031&w=2http://shh.thathost.com/secadv/2003-05-11-php.txthttp://www.ciac.org/ciac/bulletins/n-112.shtmlhttp://www.debian.org/security/2003/dsa-351http://www.mandriva.com/security/advisories?name=MDKSA-2003:082http://www.osvdb.org/4758http://www.redhat.com/support/errata/RHSA-2003-204.htmlhttp://www.securityfocus.com/bid/7761http://www.securitytracker.com/id?1008653http://www.turbolinux.co.jp/security/2003/TLSA-2003-47j.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/12259https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A485
2003-07-24
Published