CVE Vulnerabilities

CVE-2006-1032

Published: Mar 07, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Eval injection vulnerability in the decode function in rpc_decoder.php for phpRPC 0.7 and earlier, as used by runcms, exoops, and possibly other programs, allows remote attackers to execute arbitrary PHP code via the base64 tag.

Affected Software

NameVendorStart VersionEnd Version
PhprpcPhprpc0.7 (including)0.7 (including)
PhprpcPhprpc0.8 (including)0.8 (including)
PhprpcPhprpc0.9 (including)0.9 (including)

References