NA

CVE-2005-2116

Published: 05/07/2005 Updated: 07/11/2023

Vulnerability Summary

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1921. Reason: This candidate is a duplicate of CVE-2005-1921. Notes: All CVE users should reference CVE-2005-1921 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

Vendor Advisories

Two input validation errors were discovered in drupal and its bundled xmlrpc module These errors can lead to the execution of arbitrary commands on the web server running drupal drupal was not included in the old stable distribution (woody) For the current stable distribution (sarge), these problems have been fixed in version 453-3 For the u ...

Exploits

# tested and working /str0ke #!/usr/bin/perl # # ilo-- # # This program is no GPL or has nothing to do with FSF, but some # code was ripped from romansoft sorry, too lazy! # # xmlrpc bug by James from GulfTech Security Research # pearphpnet/bugs/bugphp?id=4692 # xmlrpc drupal exploit, but James sais xoops, phpnuke and other ...