|
|
|
Vulnerability Note VU#147027PHP path translation vulnerabilityOverviewPHP contains a path translation vulnerability that may allow an attacker to execute arbitrary code.I. DescriptionPHP is a scripting language that is designed for web-based applications and can be imbedded directly into HTML.PHP versions prior to 5.2.6 contain a path translation vulnerability. For more information about this issue, see the PHP CVS log.
PHP 5.2.6 was released to address this and other issues.
Referenceshttps://www.securecoding.cert.org/confluence/x/_wI Thanks to the PHP team for information that was used in this report. This document was written by Ryan Giobbi.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||||