Ciph3r

27 exploits Active since Jun 2008
CVE-2008-7002 EXPLOITDB php WORKING POC
PHP 5.2.5 - Local Restriction Bypass via exec system shell_exec passthru popen Functions
PHP 5.2.5 does not enforce (a) open_basedir and (b) safe_mode_exec_dir restrictions for certain functions, which might allow local users to bypass intended access restrictions and call programs outside of the intended directory via the (1) exec, (2) system, (3) shell_exec, (4) passthru, or (5) popen functions, possibly involving pathnames such as "C:" drive notation.
EIP-2026-103261 EXPLOITDB text WRITEUP
Atmail WebAdmin and Webmail Control Panel - SQL Root Password Disclosure