|
PHP .Htaccess Safe_Mode and Open_Basedir Restriction-Bypass Vulnerability
To exploit these issues, an attacker may use system commands and standard PHP code. The attacker must also be able to write to a '.htaccess' file. The "AllowOverride Options" and "AllowOverride All" privileges must be set in Apache configurations. The discoverer of this issue states that he will release an exploit on June 29, 2007. |
|
|
Privacy Statement |