Description
The (1) session_save_path, (2) ini_set, and (3) error_log functions in PHP 4.4.7 and earlier, and PHP 5 5.2.3 and earlier, when invoked from a .htaccess file, allow remote attackers to bypass safe_mode and open_basedir restrictions and possibly execute arbitrary commands, as demonstrated using (a) php_value, (b) php_flag, and (c) directives in .htaccess.
Published: 2007-06-29
Score: 6.8 Medium
EPSS: 3.6% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2007-3368 The (1) session_save_path, (2) ini_set, and (3) error_log functions in PHP 4.4.7 and earlier, and PHP 5 5.2.3 and earlier, when invoked from a .htaccess file, allow remote attackers to bypass safe_mode and open_basedir restrictions and possibly execute arbitrary commands, as demonstrated using (a) php_value, (b) php_flag, and (c) directives in .htaccess.
References
Link Providers
http://docs.info.apple.com/article.html?artnum=307562 cve-icon cve-icon
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01345501 cve-icon cve-icon
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html cve-icon cve-icon
http://seclists.org/fulldisclosure/2020/Sep/34 cve-icon cve-icon
http://secunia.com/advisories/26642 cve-icon cve-icon
http://secunia.com/advisories/26822 cve-icon cve-icon
http://secunia.com/advisories/26838 cve-icon cve-icon
http://secunia.com/advisories/27102 cve-icon cve-icon
http://secunia.com/advisories/27377 cve-icon cve-icon
http://secunia.com/advisories/27648 cve-icon cve-icon
http://secunia.com/advisories/28318 cve-icon cve-icon
http://secunia.com/advisories/28750 cve-icon cve-icon
http://secunia.com/advisories/28936 cve-icon cve-icon
http://secunia.com/advisories/29420 cve-icon cve-icon
http://secunia.com/advisories/30040 cve-icon cve-icon
http://securityreason.com/achievement_exploitalert/9 cve-icon cve-icon
http://securityreason.com/achievement_securityalert/45 cve-icon cve-icon
http://securityreason.com/securityalert/2831 cve-icon cve-icon
http://securityreason.com/securityalert/3389 cve-icon cve-icon
http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.335136 cve-icon cve-icon
http://www.gentoo.org/security/en/glsa/glsa-200710-02.xml cve-icon cve-icon
http://www.openwall.com/lists/oss-security/2020/09/17/3 cve-icon cve-icon
http://www.osvdb.org/38682 cve-icon cve-icon
http://www.php.net/ChangeLog-4.php cve-icon cve-icon
http://www.php.net/ChangeLog-5.php#5.2.4 cve-icon cve-icon
http://www.php.net/ChangeLog-5.php#5.2.5 cve-icon cve-icon
http://www.php.net/releases/4_4_8.php cve-icon cve-icon
http://www.php.net/releases/5_2_4.php cve-icon cve-icon
http://www.php.net/releases/5_2_5.php cve-icon cve-icon
http://www.securityfocus.com/archive/1/472343/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/archive/1/491693/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/24661 cve-icon cve-icon
http://www.securityfocus.com/bid/25498 cve-icon cve-icon
http://www.trustix.org/errata/2007/0026/ cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/3023 cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/0059 cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/0398 cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/0924/references cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/35102 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/39403 cve-icon cve-icon
https://issues.rpath.com/browse/RPL-1693 cve-icon cve-icon
https://issues.rpath.com/browse/RPL-1702 cve-icon cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6056 cve-icon cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T14:14:12.954Z

Reserved: 2007-06-25T00:00:00.000Z

Link: CVE-2007-3378

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-06-29T18:30:00.000

Modified: 2026-04-23T00:35:47.467

Link: CVE-2007-3378

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses