Описание
The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demonstrated by using ini_alter when ini_set is disabled.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
php4 | removed | package | ||
php5 | removed | package |
Примечания
if the function is blacklisted but not its alias it is a configuration
issue of the site not a vulnerability in php
EPSS
Процентиль: 52%
0.0029
Низкий
Связанные уязвимости
nvd
больше 17 лет назад
The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demonstrated by using ini_alter when ini_set is disabled.
github
около 3 лет назад
The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demonstrated by using ini_alter when ini_set is disabled.
EPSS
Процентиль: 52%
0.0029
Низкий