4.6
CVSSv2

CVE-2007-1835

Published: 03/04/2007 Updated: 30/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP 4 prior to 4.4.5 and PHP 5 prior to 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

php php 4.0

php php 4.0.3

php php 4.0.4

php php 4.0.7

php php 4.1.1

php php 4.1.2

php php 4.3.1

php php 4.3.10

php php 4.3.7

php php 4.3.8

php php 4.4.6

php php 5.0.0

php php 5.0.1

php php 5.0

php php 5.1.0

php php 5.2.0

php php 4.0.2

php php 4.1.0

php php 4.2

php php 4.3.0

php php 4.3.5

php php 4.3.6

php php 4.4.4

php php 4.4.5

php php 5.1.5

php php 5.1.6

php php 4.0.1

php php 4.0.6

php php 4.2.2

php php 4.2.3

php php 4.3.3

php php 4.3.4

php php 4.4.2

php php 4.4.3

php php 5.0.4

php php 5.0.5

php php 5.1.3

php php 5.1.4

php php 4.0.0

php php 4.0.5

php php 4.2.0

php php 4.2.1

php php 4.3.11

php php 4.3.2

php php 4.3.9

php php 4.4.0

php php 4.4.1

php php 5.0.2

php php 5.0.3

php php 5.1.1

php php 5.1.2

Exploits

source: wwwsecurityfocuscom/bid/23183/info PHP is prone to a 'open_basedir' restriction-bypass vulnerability due to a design error Successful exploits could allow an attacker to access sensitive information or to write files in unauthorized locations This vulnerability would be an issue in shared-hosting configurations where multiple ...