Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

PHP .Htaccess Safe_Mode and Open_Basedir Restriction-Bypass Vulnerability

To exploit these issues, an attacker may use system commands and standard PHP code. The attacker must also be able to write to a '.htaccess' file. The "AllowOverride Options" and "AllowOverride All" privileges must be set in Apache configurations.

The discoverer of this issue states that he will release an exploit on June 29, 2007.







 

Privacy Statement
Copyright 2008, SecurityFocus