Unrated severityNVD Advisory· Published Sep 14, 2007· Updated Apr 23, 2026
CVE-2007-4889
CVE-2007-4889
Description
The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions via the MySQL (1) LOAD_FILE, (2) INTO DUMPFILE, and (3) INTO OUTFILE functions, a different issue than CVE-2007-3997.
Affected products
2- cpe:2.3:a:php:mysql_extension:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.