Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-4850 (PHP)

BugsAlert Home > CVE-2007-4850 (PHP)
 
 

curl/interface.c in the cURL library (aka libcurl) in PHP 5.2.4 and 5.2.5 allows context-dependent attackers to bypass safe_mode and open_basedir restrictions and read arbitrary files via a file:// request containing a \x00 sequence, a different vulnerability than CVE-2006-2563.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-4850

Learn more about CVE-2007-4850 (PHP)
 
Tags: cve-2007-4850 php

Related Items

      FrSIRT - Gentoo Security Update Fixes Audit Buffer Overflow Vulnerability

      Apple Mac OS X Mail Attachment Handling Command Injection Vulnerability

      FrSIRT - MetaGauge HTTP Request Remote Directory Traversal Vulnerability

      CVE-2008-3991 (database_10g, database_9i)

      Malicious Microprocessor Opens New Doors for Attack

      Trojan-Downloader.VBS.Agent.fd

      CVE-2008-5283 (google_hack_honeypot_file_upload_manager)

 

Pixel