CVE-2005-1921
Last modified
CVE-2005-1921 is a vulnerability of currently unknown severity. Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.. EPSS estimates a 79.07% chance of exploitation in the next 30 days.
Description
Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Php | Xml Rpc | <= 1.3.0 |
| Gggeek | Phpxmlrpc | <= 1.1 |
| Drupal | Drupal | < 4.5.4 |
| Drupal | Drupal | >= 4.6.0, < 4.6.2 |
| Tiki | Tikiwiki Cms\/Groupware | < 1.8.5 |
| Debian | Debian Linux | 3.1 |
References
- http://marc.info/?l=bugtraq&m=112008638320145&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112015336720867&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112605112027335&w=2Third Party Advisory
- http://pear.php.net/package/XML_RPC/download/1.3.1Patch, Product
- http://secunia.com/advisories/15810Broken Link
- http://secunia.com/advisories/15852Broken Link
- http://secunia.com/advisories/15855Broken Link
- http://secunia.com/advisories/15861Broken Link
- http://secunia.com/advisories/15872Broken Link
- http://secunia.com/advisories/15883Broken Link
- http://secunia.com/advisories/15884Broken Link
- http://secunia.com/advisories/15895Broken Link
- http://secunia.com/advisories/15903Broken Link
- http://secunia.com/advisories/15904Broken Link
- http://secunia.com/advisories/15916Broken Link
- http://secunia.com/advisories/15917Broken Link
- http://secunia.com/advisories/15922Broken Link
- http://secunia.com/advisories/15944Broken Link
- http://secunia.com/advisories/15947Broken Link
- http://secunia.com/advisories/15957Broken Link
- http://secunia.com/advisories/16001Broken Link
- http://secunia.com/advisories/16339Broken Link
- http://secunia.com/advisories/16693Broken Link
- http://secunia.com/advisories/17440Broken Link
- http://secunia.com/advisories/17674Broken Link
- http://secunia.com/advisories/18003Broken Link
- http://security.gentoo.org/glsa/glsa-200507-01.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-06.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-07.xmlThird Party Advisory
- http://securitytracker.com/id?1015336Broken Link, Third Party Advisory, VDB Entry
- http://www.ampache.org/announce/3_3_1_2.phpBroken Link
- http://www.debian.org/security/2005/dsa-745Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-746Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-747Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-789Mailing List, Third Party Advisory
- http://www.drupal.org/security/drupal-sa-2005-003/advisory.txtThird Party Advisory
- http://www.gulftech.org/?node=research&article_id=00087-07012005Not Applicable, Vendor Advisory
- http://www.hardened-php.net/advisory-022005.phpNot Applicable
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:109Patch, Third Party Advisory, Vendor Advisory
- http://www.securityfocus.com/archive/1/419064/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/14088Broken Link, Third Party Advisory, VDB Entry
- http://marc.info/?l=bugtraq&m=112008638320145&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112015336720867&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=112605112027335&w=2Third Party Advisory
- http://pear.php.net/package/XML_RPC/download/1.3.1Patch, Product
- http://secunia.com/advisories/15810Broken Link
- http://secunia.com/advisories/15852Broken Link
- http://secunia.com/advisories/15855Broken Link
- http://secunia.com/advisories/15861Broken Link
- http://secunia.com/advisories/15872Broken Link
- http://secunia.com/advisories/15883Broken Link
- http://secunia.com/advisories/15884Broken Link
- http://secunia.com/advisories/15895Broken Link
- http://secunia.com/advisories/15903Broken Link
- http://secunia.com/advisories/15904Broken Link
- http://secunia.com/advisories/15916Broken Link
- http://secunia.com/advisories/15917Broken Link
- http://secunia.com/advisories/15922Broken Link
- http://secunia.com/advisories/15944Broken Link
- http://secunia.com/advisories/15947Broken Link
- http://secunia.com/advisories/15957Broken Link
- http://secunia.com/advisories/16001Broken Link
- http://secunia.com/advisories/16339Broken Link
- http://secunia.com/advisories/16693Broken Link
- http://secunia.com/advisories/17440Broken Link
- http://secunia.com/advisories/17674Broken Link
- http://secunia.com/advisories/18003Broken Link
- http://security.gentoo.org/glsa/glsa-200507-01.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-06.xmlThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200507-07.xmlThird Party Advisory
- http://securitytracker.com/id?1015336Broken Link, Third Party Advisory, VDB Entry
- http://www.ampache.org/announce/3_3_1_2.phpBroken Link
- http://www.debian.org/security/2005/dsa-745Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-746Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-747Mailing List, Third Party Advisory
- http://www.debian.org/security/2005/dsa-789Mailing List, Third Party Advisory
- http://www.drupal.org/security/drupal-sa-2005-003/advisory.txtThird Party Advisory
- http://www.gulftech.org/?node=research&article_id=00087-07012005Not Applicable, Vendor Advisory
- http://www.hardened-php.net/advisory-022005.phpNot Applicable
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:109Patch, Third Party Advisory, Vendor Advisory
- http://www.securityfocus.com/archive/1/419064/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/14088Broken Link, Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-1921?
How severe is CVE-2005-1921?
How do I fix CVE-2005-1921?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-1915The log4sh_readProperties function in log4sh 1.2.5 and earli…
- CVE-2005-1916linki.py in ekg 2005-06-05 and earlier allows local users to…5.5
- CVE-2005-1917kpopper 1.0 and earlier allows local users to create and ove…
- CVE-2005-1918The original patch for a GNU tar directory traversal vulnera…
- CVE-2005-1919Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-1920The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x th…7.5
- CVE-2005-1922The MS-Expand file handling in Clam AntiVirus (ClamAV) befor…
- CVE-2005-1923The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV…
- CVE-2005-1924The G/PGP (GPG) Plugin 2.1 and earlier for Squirrelmail allo…
- CVE-2005-1925Multiple directory traversal vulnerabilities in Tikiwiki bef…
- CVE-2005-1928Trend Micro ServerProtect EarthAgent for Windows Management …
- CVE-2005-1929Multiple heap-based buffer overflows in (1) isaNVWRequest.dl…
Are you affected by CVE-2005-1921?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
