PHP 5 'posix_access()'功安全模式绕过目录遍历漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

CVE-2008-2665 PHP is prone to a directory-traversal vulnerability because it fails to adequately sanitize user-supplied data. Attackers can leverage this issue to bypass security restrictions enforced by 'safe_mode' to access data outside of the root webserver directory. Successful attacks may allow an attacker to access sensitive information that could aid in further attacks. Slackware Linux 12.1 Slackware Linux 12.0 Slackware Linux -current PHP PHP 5.2.6 Gentoo Linux 暂无 ---------- <a href=www.php.net target=_blank>www.php.net</a>

0%
暂无可用Exp或PoC
当前有0条受影响产品信息