CVE-2007-4889

The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions via the MySQL (1) LOAD_FILE, (2) INTO DUMPFILE, and (3) INTO OUTFILE functions, a different issue than CVE-2007-3997.
Configurations

Configuration 1

cpe:2.3:a:php:mysql_extension:*:*:*:*:*:*:*:*
cpe:2.3:a:php:php:*:*:*:*:*:*:*:*

Information

Published : 2007-09-14 01:17

Updated : 2018-10-15 09:38


NVD link : CVE-2007-4889

Mitre link : CVE-2007-4889

Products Affected