Vulnerabilities (CVE)

Filtered by vendor Ioncube Subscribe
Filtered by product Php Encoder
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-5447 2 Ioncube, Php 2 Php Encoder, Php 2024-02-28 4.3 MEDIUM N/A
ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by reading arbitrary files via the ioncube_read_file function.