Eval injection vulnerability in the decode function in rpc_decoder.php for phpRPC 0.7 and earlier, as used by runcms, exoops, and possibly other programs, allows remote attackers to execute arbitrary PHP code via the base64 tag.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Phprpc | Phprpc | 0.7 (including) | 0.7 (including) |
| Phprpc | Phprpc | 0.8 (including) | 0.8 (including) |
| Phprpc | Phprpc | 0.9 (including) | 0.9 (including) |