Eval injection vulnerability in the decode function in rpc_decoder.php for phpRPC 0.7 and earlier, as used by runcms, exoops, and possibly other programs, allows remote attackers to execute arbitrary PHP code via the base64 tag.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phprpc | Phprpc | 0.7 (including) | 0.7 (including) |
Phprpc | Phprpc | 0.8 (including) | 0.8 (including) |
Phprpc | Phprpc | 0.9 (including) | 0.9 (including) |