Unspecified vulnerability in glob in PHP before 4.4.8, when open_basedir is enabled, has unknown impact and attack vectors. NOTE: this issue reportedly exists because of a regression related to CVE-2007-4663.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2008/0059 | vdb entry |
http://www.php.net/releases/4_4_8.php | |
http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.335136 | vendor advisory |
http://secunia.com/advisories/28936 | third party advisory |
http://bugs.php.net/bug.php?id=41655 | exploit |
http://www.php.net/ChangeLog-4.php | |
http://secunia.com/advisories/28318 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39401 | vdb entry |