Description
PHP 5 before 5.2.7 does not enforce the error_log safe_mode restrictions when safe_mode is enabled through a php_admin_flag setting in httpd.conf, which allows context-dependent attackers to write to arbitrary files by placing a "php_value error_log" entry in a .htaccess file.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Custom Fields (ACF) PHP Object Injection (5.7.10)
WordPress Plugin Chat-Support Board-WordPress Chat Privilege Escalation (3.3.8)
WordPress Plugin Pricing Table by Supsystic Multiple Vulnerabilities (1.8.1)
Apache HTTP Server Incorrect Calculation of Buffer Size Vulnerability (CVE-2004-0940)
PHP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-4782)