Description
Unknown vulnerability in CGI module for PHP 4.3.0 allows attackers to access arbitrary files as the PHP user, and possibly execute PHP code, by bypassing the CGI force redirect settings (cgi.force_redirect or --enable-force-cgi-redirect).
Affected PHP version 4.3.0.
Remediation
Upgrade PHP to the latest version.
References
Related Vulnerabilities
WordPress Plugin Easy Digital Downloads Attach Accounts to Orders Cross-Site Scripting (2.0.1)
WordPress Plugin Advanced Custom Fields (ACF) Cross-Site Scripting (4.4.7)
MySQL CVE-2015-4766 Vulnerability (CVE-2015-4766)
WordPress Plugin Image Slider-Responsive Slider Unspecified Vulnerability (2.4.2)