CVE

Id
24727  
CVE No.
CVE-2007-1370  
Status
Candidate  
Description
Zend Platform 2.2.3 and earlier has incorrect ownership for scd.sh and certain other files, which allows local users to gain root privileges by modifying the files. NOTE: this only occurs when safe_mode and open_basedir are disabled; other settings require leverage for other vulnerabilities.  
Phase
Assigned (20070309)  
Votes
None (candidate not yet proposed)  
Comments