CVE Vulnerabilities

CVE-2007-5900

Published: Nov 20, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW

PHP before 5.2.5 allows local users to bypass protection mechanisms configured through php_admin_value or php_admin_flag in httpd.conf by using ini_set to modify arbitrary configuration variables, a different issue than CVE-2006-4625.

Affected Software

Name Vendor Start Version End Version
Php Php * 5.2.4 (including)
Php5 Ubuntu dapper *
Php5 Ubuntu feisty *
Php5 Ubuntu gutsy *
Php5 Ubuntu hardy *
Php5 Ubuntu upstream *

References