CVE-2005-1921
Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5)…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 79.1%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 79.07% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- php/xml rpc · gggeek/phpxmlrpc · drupal/drupal · tiki/tikiwiki cms\/groupware · debian/debian linux
- Source
- secalert@redhat.com
References
- http://marc.info/?l=bugtraq&m=112008638320145&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112015336720867&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112605112027335&w=2Third Party Advisory
- http://pear.php.net/package/XML_RPC/download/1.3.1Patch, Product
- http://secunia.com/advisories/15810Broken Link
- http://secunia.com/advisories/15852Broken Link
- http://secunia.com/advisories/15855Broken Link
- http://secunia.com/advisories/15861Broken Link
- http://secunia.com/advisories/15872Broken Link
- http://secunia.com/advisories/15883Broken Link
- http://secunia.com/advisories/15884Broken Link
- http://secunia.com/advisories/15895Broken Link
- http://secunia.com/advisories/15903Broken Link
- http://secunia.com/advisories/15904Broken Link
- http://secunia.com/advisories/15916Broken Link
- http://secunia.com/advisories/15917Broken Link
- http://secunia.com/advisories/15922Broken Link
- http://secunia.com/advisories/15944Broken Link
- http://secunia.com/advisories/15947Broken Link
- http://secunia.com/advisories/15957Broken Link
- http://secunia.com/advisories/16001Broken Link
- http://secunia.com/advisories/16339Broken Link
- http://secunia.com/advisories/16693Broken Link
- http://secunia.com/advisories/17440Broken Link
- http://secunia.com/advisories/17674Broken Link
- http://secunia.com/advisories/18003Broken Link
- http://security.gentoo.org/glsa/glsa-200507-01.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-06.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-07.xmlThird Party Advisory
- http://securitytracker.com/id?1015336Broken Link, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.