AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2007-4850

MEDIUM · CVSS 5 EPSS 5.58%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-01-25 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2007-4850
Severity
MEDIUM
CVSS
5
EPSS
5.58%

Original Filing — NVD Description

curl/interface.c in the cURL library (aka libcurl) in PHP 5.2.4 and 5.2.5 allows context-dependent attackers to bypass safe_mode and open_basedir restrictions and read arbitrary files via a file:// request containing a \x00 sequence, a different vulnerability than CVE-2006-2563.