Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-4889
Description:The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions via the MySQL (1) LOAD_FILE, (2) INTO DUMPFILE, and (3) INTO OUTFILE functions, a different issue than CVE-2007-3997.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-4889
Bugtraq: 20070911 PHP 5.2.4 <= various mysql functions safemode & open_basedir bypass (Google Search)
http://www.securityfocus.com/archive/1/479082/100/0/threaded
Bugtraq: 20070912 Re Re: PHP 5.2.4 <= various mysql functions safemode & open_basedir bypass (Google Search)
http://www.securityfocus.com/archive/1/479189/100/200/threaded
Bugtraq: 20070912 Re: PHP 5.2.4 <= various mysql functions safemode & open_basedir bypass (Google Search)
http://www.securityfocus.com/archive/1/479187/100/200/threaded
http://securityreason.com/securityalert/3134
XForce ISS Database: php-multiple-functions-security-bypass(36555)
https://exchange.xforce.ibmcloud.com/vulnerabilities/36555




© 1998-2025 E-Soft Inc. All rights reserved.