Логотип exploitDog
bind:CVE-2014-2988
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-2988

Количество 3

Количество 3

nvd логотип

CVE-2014-2988

больше 11 лет назад

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta allows remote authenticated administrators to execute arbitrary PHP code via crafted callback values to the call_user_func PHP function, as demonstrated using the newsettings[system] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2987.

CVSS2: 8.5
EPSS: Низкий
debian логотип

CVE-2014-2988

больше 11 лет назад

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Commu ...

CVSS2: 8.5
EPSS: Низкий
github логотип

GHSA-w28c-prr6-33rc

больше 3 лет назад

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta allows remote authenticated administrators to execute arbitrary PHP code via crafted callback values to the call_user_func PHP function, as demonstrated using the newsettings[system] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2987.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-2988

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta allows remote authenticated administrators to execute arbitrary PHP code via crafted callback values to the call_user_func PHP function, as demonstrated using the newsettings[system] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2987.

CVSS2: 8.5
1%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-2988

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Commu ...

CVSS2: 8.5
1%
Низкий
больше 11 лет назад
github логотип
GHSA-w28c-prr6-33rc

EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta allows remote authenticated administrators to execute arbitrary PHP code via crafted callback values to the call_user_func PHP function, as demonstrated using the newsettings[system] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2987.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу