Loading...
Loading...
The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers to bypass safe_mode restrictions and read arbitrary files via a file path specified with an invalid URI, as demonstrated via the srpath URI.
May 24, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-0448
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.