Description
The libxml RSHUTDOWN function in PHP 5.x allows remote attackers to bypass the open_basedir protection mechanism and read arbitrary files via vectors involving a stream_close method call during use of a custom stream wrapper.
Remediation
References
Related Vulnerabilities
Oracle JRE Incorrect Default Permissions Vulnerability (CVE-2024-21012)
Oracle JRE CVE-2022-21619 Vulnerability (CVE-2022-21619)
Microsoft SQL Server Elevation of Privilege Vulnerability (CVE-2021-1636)
WordPress Plugin WP STAGING WordPress Backup-Migration Backup Restore Arbitrary File Upload (3.4.3)