CVE-2007-5447 Information
Feb 14, 2021
cve
Description
ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions which allows context-dependent attackers to bypass intended limitations as demonstrated by reading arbitrary files via the ioncube_read_file function.
Reference
http://osvdb.org/41708 http://secunia.com/advisories/27178 http://www.securityfocus.com/bid/26024 https://exchange.xforce.ibmcloud.com/vulnerabilities/37227 https://www.exploit-db.com/exploits/4517
Share on: