CVE-2014-2935 Information

Description

costview3/xmlrpc_server/xmlrpc.php in CostView in Caldera 9.20 allows remote attackers to execute arbitrary commands via shell metacharacters in a methodCall element in a PHP XMLRPC request.

Reference

http://www.kb.cert.org/vuls/id/693092 http://www.securityfocus.com/bid/67252

Share on: