CVE-2006-2563
CVE-2006-2563
The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://secunia.com/advisories/20337http://secunia.com/advisories/21050http://secunia.com/advisories/21847http://secunia.com/advisories/22039http://securityreason.com/achievement_securityalert/39http://securityreason.com/securityalert/959http://securitytracker.com/id?1016175https://exchange.xforce.ibmcloud.com/vulnerabilities/26764http://www.mandriva.com/security/advisories?name=MDKSA-2006:122http://www.novell.com/linux/security/advisories/2006_22_sr.htmlhttp://www.novell.com/linux/security/advisories/2006_52_php.htmlhttp://www.securityfocus.com/bid/18116