CVE-2006-1032

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/03/2006
Last modified:
03/04/2025

Description

Eval injection vulnerability in the decode function in rpc_decoder.php for phpRPC 0.7 and earlier, as used by runcms, exoops, and possibly other programs, allows remote attackers to execute arbitrary PHP code via the base64 tag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:phprpc:phprpc:0.7:*:*:*:*:*:*:*
cpe:2.3:a:phprpc:phprpc:0.8:*:*:*:*:*:*:*
cpe:2.3:a:phprpc:phprpc:0.9:*:*:*:*:*:*:*