Microsoft SharePoint is prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may aid in further attacks.
Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells.
Permitting local access to trusted individuals only will greatly prove to mitigate the likelihood of exploitation.
Implement multiple authentication mechanisms.
Implement measures such as .htaccess to provide an additional layer of authentication for sensitive PHP scripts. This may limit the impact of malicious users gaining unauthorized access to session variables.
Updates are available. Please see the references or vendor advisory for more information.