Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-4663

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2007-4663
Last Modified 07 Mar 2011 09:58:58
Published 04 Sep 2007 06:17:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2007-4663

Summary

Directory traversal vulnerability in PHP before 5.2.4 allows attackers to bypass open_basedir restrictions via unspecified vectors involving the glob function.

Vulnerable Systems

Application

  • Php 5.2.3


References

CONFIRM - http://www.php.net/releases/5_2_4.php

CONFIRM - http://www.php.net/ChangeLog-5.php#5.2.4

SECUNIA - 26642

VUPEN - ADV-2007-3023

CONFIRM - https://issues.rpath.com/browse/RPL-1702

CONFIRM - https://issues.rpath.com/browse/RPL-1693

XF - php-glob-security-bypass(36386)

GENTOO - GLSA-200710-02

SECUNIA - 27377

SECUNIA - 27102

SECUNIA - 26838


Last Updated: 27 May 2016 10:45:56