Description
PHP before 5.2.1 allows attackers to bypass safe_mode and open_basedir restrictions via unspecified vectors in the session extension. NOTE: it is possible that this issue is a duplicate of CVE-2006-6383.
Remediation
References
Related Vulnerabilities
WordPress 4.7.x Possible SQL Injection Vulnerability (4.7 - 4.7.6)
WordPress Plugin Mobile Domain Multiple Vulnerabilities (1.5.2)
WordPress Plugin PayPal for WooCommerce Security Bypass (1.5.7)
WordPress 4.1.x Denial of Service Vulnerability (4.1 - 4.1.22)
PHP Use of Uninitialized Resource Vulnerability (CVE-2015-3414)