Description
The imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which allows local users to read arbitrary files or list arbitrary directory contents.
Remediation
References
Related Vulnerabilities
WordPress Plugin ImageLinks Interactive Image Builder for WordPress Cross-Site Scripting (1.5.2)
Squid Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-41317)
Oracle Database Server CVE-2019-2516 Vulnerability (CVE-2019-2516)
WebLogic CVE-2019-2824 Vulnerability (CVE-2019-2824)
WordPress Plugin Advanced Contact form 7 DB SQL Injection (1.6.0)