Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 510
Alerts This Week
Warning Icon 1 510

Gentoo GLSA 200507-08 High: phpGroupWare and eGroupWare Script Threat

gentoo
Calendar Grey July 10, 2005
Scroller Gentoo
Urgent security alert: Critical PHP code execution vulnerability in phpGroupWare and eGroupWare needs prompt remediation on Gentoo platforms.
phpGroupWare and eGroupWare include an XML-RPC implementation which allows remote attackers to execute arbitrary PHP script commands.

Summary

Gentoo Linux Security Advisory GLSA 200507-08 https://security.gentoo.org/ Severity: High Title: phpGroupWare, eGroupWare: PHP script injection vulnerability Date: July 10, 2005 Bugs: #97460, #97651 ID: 200507-08

Synopsis ======= phpGroupWare and eGroupWare include an XML-RPC implementation which allows remote attackers to execute arbitrary PHP script commands.
Background ========= phpGroupWare and eGroupWare are web based collaboration software suites.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-apps/phpgroupware < 0.9.16.006 >= 0.9.16.006 2 www-apps/egroupware < 1.0.0.008 >= 1.0.0.008 ----------------------...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround