Total vulnerabilities in the database
PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function.
Software | From | Fixed in |
---|---|---|
php / php | 4.0.4 | 4.0.4.x |
php / php | 4.0.5 | 4.0.5.x |
php / php | 4.0.7-rc2 | 4.0.7-rc2.x |
php / php | 4.0.7-rc1 | 4.0.7-rc1.x |
php / php | 4.0.3-patch1 | 4.0.3-patch1.x |
php / php | 4.0.7 | 4.0.7.x |
php / php | 4.0.2 | 4.0.2.x |
php / php | 4.0.1-patch1 | 4.0.1-patch1.x |
php / php | 4.0 | 4.0.x |
php / php | 4.0.1-patch2 | 4.0.1-patch2.x |
php / php | 4.0.6 | 4.0.6.x |
php / php | 4.0.7-rc3 | 4.0.7-rc3.x |
php / php | 4.0.1 | 4.0.1.x |
php / php | 4.0.3 | 4.0.3.x |