The safe_mode implementation in PHP before 5.2.13 does not properly handle directory pathnames that lack a trailing / (slash) character, which allows context-dependent attackers to bypass intended access restrictions via vectors related to use of the tempnam function.
CVSS Details
- CVSS 3.1 Base Score: 7.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Php | — | Apply OS X security update 2010-007Apply OS X security update 2010-005 | Dec 16, 2011 | Mar 26, 2010 |
| Gentoo Linux | — | Upgrade dev-lang/php. | Oct 30, 2017 | Mar 26, 2010 |
| Php | — | Upgrade to PHP version 5.2.13 | Oct 1, 2012 | Mar 26, 2010 |
| Ubuntu | — | Upgrade libapache2-mod-php5Upgrade php5-cliUpgrade php5-cgi | Nov 8, 2024 | Mar 26, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub