Security Advisory

CVE-2006-7204

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-05-22 19:00:00
Last updated 2024-08-07 20:57:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which allows local users to read arbitrary files or list arbitrary directory contents.