{"api_version":"1","generated_at":"2026-07-24T18:23:26+00:00","cve":"CVE-2005-1921","urls":{"html":"https://cve.report/CVE-2005-1921","api":"https://cve.report/api/cve/CVE-2005-1921.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-1921","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-1921"},"summary":{"title":"CVE-2005-1921","description":"Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.","state":"PUBLISHED","assigner":"redhat","published_at":"2005-07-05 04:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["CWE-94","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://secunia.com/advisories/15855","name":"http://secunia.com/advisories/15855","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - PostNuke XML-RPC Library PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2005/dsa-746","name":"http://www.debian.org/security/2005/dsa-746","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"Debian -- Security Information -- DSA-746-1 phpgroupware","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/16693","name":"http://secunia.com/advisories/16693","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - MAXdev MD-Pro Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15884","name":"http://secunia.com/advisories/15884","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - phpPgAds XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.drupal.org/security/drupal-sa-2005-003/advisory.txt","name":"http://www.drupal.org/security/drupal-sa-2005-003/advisory.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Security advisories | Drupal.org","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"http://secunia.com/advisories/15922","name":"http://secunia.com/advisories/15922","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - Jaws \"path\" File Inclusion and XML-RPC PHP Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200507-07.xml","name":"http://security.gentoo.org/glsa/glsa-200507-07.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Linux Documentation\n--\n  phpWebSite: Multiple vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2005/dsa-745","name":"http://www.debian.org/security/2005/dsa-745","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"Debian -- Security Information -- DSA-745-1 drupal","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/16339","name":"http://secunia.com/advisories/16339","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - XOOPS PHPMailer and XML-RPC Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=112015336720867&w=2","name":"http://marc.info/?l=bugtraq&m=112015336720867&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"'[DRUPAL-SA-2005-003] Drupal 4.6.2 / 4.5.4 fixes critical XML-RPC issue' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.gulftech.org/?node=research&article_id=00087-07012005","name":"http://www.gulftech.org/?node=research&article_id=00087-07012005","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable","Vendor Advisory"],"title":"Contact Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15852","name":"http://secunia.com/advisories/15852","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - XML-RPC for PHP PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.hardened-php.net/advisory-022005.php","name":"http://www.hardened-php.net/advisory-022005.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable"],"title":"Hardened-PHP Project - PHP Security\n\n      - Advisory 02/2005","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/17674","name":"http://secunia.com/advisories/17674","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"FreeMED XML_RPC PHP Code Execution Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://sourceforge.net/project/showfiles.php?group_id=87163","name":"http://sourceforge.net/project/showfiles.php?group_id=87163","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Product"],"title":"SourceForge.net: Project Filelist","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15917","name":"http://secunia.com/advisories/15917","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - phpGroupWare XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15883","name":"http://secunia.com/advisories/15883","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - phpAdsNew XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15872","name":"http://secunia.com/advisories/15872","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - Drupal PHP Code Execution Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2005/2827","name":"http://www.vupen.com/english/advisories/2005/2827","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Webmail - OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://sourceforge.net/project/shownotes.php?release_id=338803","name":"http://sourceforge.net/project/shownotes.php?release_id=338803","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Page not found\n    - SourceForge.net","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.ampache.org/announce/3_3_1_2.php","name":"http://www.ampache.org/announce/3_3_1_2.php","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"[A] m p a c h e   :    For the love of music since May 5th 2001","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/17440","name":"http://secunia.com/advisories/17440","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - b2evolution XML-RPC PHP Code Execution Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=112008638320145&w=2","name":"http://marc.info/?l=bugtraq&m=112008638320145&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"'Advisory 02/2005: Remote code execution in Serendipity' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15895","name":"http://secunia.com/advisories/15895","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - Nucleus XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200507-06.xml","name":"http://security.gentoo.org/glsa/glsa-200507-06.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Linux Documentation\n--\n  TikiWiki: Arbitrary command execution through XML-RPC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/14088","name":"http://www.securityfocus.com/bid/14088","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"XML-RPC for PHP Remote Code Injection Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/15957","name":"http://secunia.com/advisories/15957","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - Ampache XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/18003","name":"http://secunia.com/advisories/18003","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - HP Tru64 UNIX Secure Web Server XML_RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15947","name":"http://secunia.com/advisories/15947","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - MailWatch for MailScanner XML-RPC PHP Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15810","name":"http://secunia.com/advisories/15810","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - phpMyFAQ XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15903","name":"http://secunia.com/advisories/15903","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - PhpWiki XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=112605112027335&w=2","name":"http://marc.info/?l=bugtraq&m=112605112027335&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"'SUSE Security Announcement: php4, php5 remote code execution' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200507-01.xml","name":"http://security.gentoo.org/glsa/glsa-200507-01.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Linux Documentation\n--\n  PEAR XML-RPC, phpxmlrpc: PHP script injection vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2005/dsa-747","name":"http://www.debian.org/security/2005/dsa-747","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"Debian -- Security Information -- DSA-747-1 egroupware","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.novell.com/linux/security/advisories/2005_18_sr.html","name":"http://www.novell.com/linux/security/advisories/2005_18_sr.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Security Announcement","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/15916","name":"http://secunia.com/advisories/15916","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - eGroupWare XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/16001","name":"http://secunia.com/advisories/16001","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - phpWebSite PEAR XML_RPC PHP Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1015336","name":"http://securitytracker.com/id?1015336","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"SecurityTracker.com Archives - HP Secure Web Server for Tru64 UNIX XMLRPC Bug Lets Remote Users Execute Arbitrary PHP Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.novell.com/linux/security/advisories/2005_41_php_pear.html","name":"http://www.novell.com/linux/security/advisories/2005_41_php_pear.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Security Announcement","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://pear.php.net/package/XML_RPC/download/1.3.1","name":"http://pear.php.net/package/XML_RPC/download/1.3.1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Product"],"title":"PEAR :: Package :: XML_RPC :: 1.3.1","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/419064/100/0/threaded","name":"http://www.securityfocus.com/archive/1/419064/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A350","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A350","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15904","name":"http://secunia.com/advisories/15904","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - BLOG:CMS XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15861","name":"http://secunia.com/advisories/15861","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - PEAR XML_RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.redhat.com/support/errata/RHSA-2005-564.html","name":"http://www.redhat.com/support/errata/RHSA-2005-564.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"rhn.redhat.com | Red Hat Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.novell.com/linux/security/advisories/2005_49_php.html","name":"http://www.novell.com/linux/security/advisories/2005_49_php.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Security Announcement","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2005:109","name":"http://www.mandriva.com/security/advisories?name=MDKSA-2005:109","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","Vendor Advisory"],"title":"Advisories - Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11294","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11294","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/15944","name":"http://secunia.com/advisories/15944","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Secunia - Advisories - TikiWiki XML-RPC PHP Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2005/dsa-789","name":"http://www.debian.org/security/2005/dsa-789","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"Debian -- Security Information -- DSA-789-1 php4","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-1921","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-1921","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"1921","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"drupal","cpe5":"drupal","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"1921","vulnerable":"1","versionEndIncluding":"1.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"gggeek","cpe5":"phpxmlrpc","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"1921","vulnerable":"1","versionEndIncluding":"1.3.0","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"php","cpe5":"xml_rpc","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"pear","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T22:06:57.671Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"oval:org.mitre.oval:def:350","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A350"},{"name":"DSA-789","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2005/dsa-789"},{"name":"15947","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15947"},{"name":"15852","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15852"},{"name":"15944","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15944"},{"name":"SUSE-SR:2005:018","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://www.novell.com/linux/security/advisories/2005_18_sr.html"},{"name":"15883","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15883"},{"name":"15872","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15872"},{"name":"15895","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15895"},{"name":"oval:org.mitre.oval:def:11294","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11294"},{"name":"1015336","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015336"},{"name":"DSA-746","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2005/dsa-746"},{"name":"17674","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17674"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.gulftech.org/?node=research&article_id=00087-07012005"},{"name":"ADV-2005-2827","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2005/2827"},{"name":"15917","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15917"},{"name":"DSA-747","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2005/dsa-747"},{"name":"SUSE-SA:2005:041","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://www.novell.com/linux/security/advisories/2005_41_php_pear.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.hardened-php.net/advisory-022005.php"},{"name":"SSRT051069","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/419064/100/0/threaded"},{"name":"SUSE-SA:2005:051","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112605112027335&w=2"},{"name":"15957","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15957"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.ampache.org/announce/3_3_1_2.php"},{"name":"15810","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15810"},{"name":"GLSA-200507-01","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200507-01.xml"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.drupal.org/security/drupal-sa-2005-003/advisory.txt"},{"name":"14088","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/14088"},{"name":"16693","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16693"},{"name":"20050629 Advisory 02/2005: Remote code execution in Serendipity","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112008638320145&w=2"},{"name":"20050629 [DRUPAL-SA-2005-003] Drupal 4.6.2 / 4.5.4 fixes critical XML-RPC issue","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112015336720867&w=2"},{"name":"GLSA-200507-07","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200507-07.xml"},{"name":"15904","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15904"},{"name":"15903","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15903"},{"name":"SUSE-SA:2005:049","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://www.novell.com/linux/security/advisories/2005_49_php.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://sourceforge.net/project/shownotes.php?release_id=338803"},{"name":"17440","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17440"},{"name":"15922","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15922"},{"name":"15884","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15884"},{"name":"15916","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15916"},{"name":"RHSA-2005:564","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2005-564.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://pear.php.net/package/XML_RPC/download/1.3.1"},{"name":"16001","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16001"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://sourceforge.net/project/showfiles.php?group_id=87163"},{"name":"MDKSA-2005:109","tags":["vendor-advisory","x_refsource_MANDRAKE","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2005:109"},{"name":"GLSA-200507-06","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200507-06.xml"},{"name":"DSA-745","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2005/dsa-745"},{"name":"HPSBTU02083","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.securityfocus.com/archive/1/419064/100/0/threaded"},{"name":"15855","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15855"},{"name":"16339","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16339"},{"name":"18003","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/18003"},{"name":"15861","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/15861"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-06-29T00:00:00.000Z","descriptions":[{"lang":"en","value":"Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-19T14:57:01.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"name":"oval:org.mitre.oval:def:350","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A350"},{"name":"DSA-789","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2005/dsa-789"},{"name":"15947","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15947"},{"name":"15852","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15852"},{"name":"15944","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15944"},{"name":"SUSE-SR:2005:018","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://www.novell.com/linux/security/advisories/2005_18_sr.html"},{"name":"15883","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15883"},{"name":"15872","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15872"},{"name":"15895","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15895"},{"name":"oval:org.mitre.oval:def:11294","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11294"},{"name":"1015336","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015336"},{"name":"DSA-746","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2005/dsa-746"},{"name":"17674","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17674"},{"tags":["x_refsource_MISC"],"url":"http://www.gulftech.org/?node=research&article_id=00087-07012005"},{"name":"ADV-2005-2827","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2005/2827"},{"name":"15917","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15917"},{"name":"DSA-747","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2005/dsa-747"},{"name":"SUSE-SA:2005:041","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://www.novell.com/linux/security/advisories/2005_41_php_pear.html"},{"tags":["x_refsource_MISC"],"url":"http://www.hardened-php.net/advisory-022005.php"},{"name":"SSRT051069","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/419064/100/0/threaded"},{"name":"SUSE-SA:2005:051","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://marc.info/?l=bugtraq&m=112605112027335&w=2"},{"name":"15957","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15957"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.ampache.org/announce/3_3_1_2.php"},{"name":"15810","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15810"},{"name":"GLSA-200507-01","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200507-01.xml"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.drupal.org/security/drupal-sa-2005-003/advisory.txt"},{"name":"14088","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/14088"},{"name":"16693","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16693"},{"name":"20050629 Advisory 02/2005: Remote code execution in Serendipity","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=112008638320145&w=2"},{"name":"20050629 [DRUPAL-SA-2005-003] Drupal 4.6.2 / 4.5.4 fixes critical XML-RPC issue","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=112015336720867&w=2"},{"name":"GLSA-200507-07","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200507-07.xml"},{"name":"15904","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15904"},{"name":"15903","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15903"},{"name":"SUSE-SA:2005:049","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://www.novell.com/linux/security/advisories/2005_49_php.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://sourceforge.net/project/shownotes.php?release_id=338803"},{"name":"17440","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17440"},{"name":"15922","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15922"},{"name":"15884","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15884"},{"name":"15916","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15916"},{"name":"RHSA-2005:564","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2005-564.html"},{"tags":["x_refsource_MISC"],"url":"http://pear.php.net/package/XML_RPC/download/1.3.1"},{"name":"16001","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16001"},{"tags":["x_refsource_CONFIRM"],"url":"http://sourceforge.net/project/showfiles.php?group_id=87163"},{"name":"MDKSA-2005:109","tags":["vendor-advisory","x_refsource_MANDRAKE"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2005:109"},{"name":"GLSA-200507-06","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200507-06.xml"},{"name":"DSA-745","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2005/dsa-745"},{"name":"HPSBTU02083","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.securityfocus.com/archive/1/419064/100/0/threaded"},{"name":"15855","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15855"},{"name":"16339","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16339"},{"name":"18003","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/18003"},{"name":"15861","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/15861"}]}},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2005-1921","datePublished":"2005-07-01T04:00:00.000Z","dateReserved":"2005-06-08T00:00:00.000Z","dateUpdated":"2024-08-07T22:06:57.671Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-07-05 04:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["CWE-94","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:php:xml_rpc:*:*:*:*:*:pear:*:*","versionEndIncluding":"1.3.0","matchCriteriaId":"DF9FF982-2BF4-49ED-82F8-C8F8327D2EF3"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:gggeek:phpxmlrpc:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1","matchCriteriaId":"83956BC5-8694-4C4B-92C4-D3C960980F66"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.4","matchCriteriaId":"00201099-3C07-44F0-880B-CE2AE77EE171"},{"vulnerable":true,"criteria":"cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*","versionStartIncluding":"4.6.0","versionEndExcluding":"4.6.2","matchCriteriaId":"3C248ACE-86AF-40FF-8B8F-FE1879E54FF2"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:tiki:tikiwiki_cms\\/groupware:*:*:*:*:*:*:*:*","versionEndExcluding":"1.8.5","matchCriteriaId":"363E6E27-87B4-4271-B374-B176DE9E5D56"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*","matchCriteriaId":"A2E0C1F8-31F5-4F61-9DF7-E49B43D3C873"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"1921","Ordinal":"1","Title":"CVE-2005-1921","CVE":"CVE-2005-1921","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"1921","Ordinal":"1","NoteData":"Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.","Type":"Description","Title":"CVE-2005-1921"},{"CveYear":"2005","CveId":"1921","Ordinal":"2","NoteData":"2005-07-01","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"1921","Ordinal":"3","NoteData":"2018-10-19","Type":"Other","Title":"Modified"}]}}}