Unrated severityNVD Advisory· Published Nov 20, 2007· Updated Jun 16, 2026
CVE-2007-5900
CVE-2007-5900
Description
PHP before 5.2.5 allows local users to bypass protection mechanisms configured through php_admin_value or php_admin_flag in httpd.conf by using ini_set to modify arbitrary configuration variables, a different issue than CVE-2006-4625.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
10- secunia.com/advisories/27648nvdPatchVendor Advisory
- bugs.php.net/bug.phpnvd
- secunia.com/advisories/27659nvd
- secunia.com/advisories/30040nvd
- securitytracker.com/idnvd
- wiki.rpath.com/wiki/Advisories:rPSA-2007-0242nvd
- www.php.net/ChangeLog-5.phpnvd
- www.php.net/releases/5_2_5.phpnvd
- www.securityfocus.com/archive/1/491693/100/0/threadednvd
- issues.rpath.com/browse/RPL-1943nvd
News mentions
0No linked articles in our index yet.