CVE-2005-3392: High severity PHP PHP vulnerability
Unspecified vulnerability in PHP before 4.4.1, when using the virtual function on Apache 2, allows remote attackers to bypass safemode and openbasedir directives.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3392?
CVE-2005-3392 has not been assigned a specific severity score, but it represents a critical security risk as it allows attackers to bypass important security restrictions.
How do I fix CVE-2005-3392?
To fix CVE-2005-3392, you should upgrade PHP to version 4.4.1 or later that addresses this vulnerability.
What software versions are affected by CVE-2005-3392?
CVE-2005-3392 affects several versions of PHP, including versions 3.x and 4.0 through 4.3.11.
Who is impacted by CVE-2005-3392?
Web applications using vulnerable versions of PHP on Apache 2 are at risk from CVE-2005-3392.
What are the potential consequences of CVE-2005-3392?
The consequences of CVE-2005-3392 include unauthorized access to sensitive data as attackers can bypass safe_mode and open_basedir protections.