The safe_mode implementation in PHP before 5.2.13 does not properly handle directory pathnames that lack a trailing / (slash) character, which allows context-dependent attackers to bypass intended access restrictions via vectors related to use of the tempnam function.
CVSS Details
- CVSS 3.1 Base Score: 7.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Php | — | Apply OS X security update 2010-007Apply OS X security update 2010-005 | Dec 16, 2011 | Mar 26, 2010 |
| Gentoo Linux | — | Upgrade dev-lang/php. | Oct 30, 2017 | Mar 26, 2010 |
| Php | — | Upgrade to PHP version 5.2.13 | Oct 1, 2012 | Mar 26, 2010 |
| Ubuntu | — | Upgrade php5-cgiUpgrade php5-cliUpgrade libapache2-mod-php5 | Nov 8, 2024 | Mar 26, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub