Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:PHP:HORDE-EVAL

Severity

Major

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Horde Arbitrary PHP Code Injection

Release Date

2006/05/04

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: Horde Arbitrary PHP Code Injection


This signature detects a maliciously crafted HTTP request designed to exploit an insecure eval() statement in Horde PHP. A successful attack can lead to remote arbitrary code execution. An exploit for this vulnerability is currently available.

Extended Description

Horde is prone to a remote PHP code-execution vulnerability. An attacker can exploit this issue to execute arbitrary malicious PHP code and in the context of the webserver process. This may help the attacker compromise the application and the underlying system; other attacks are also possible. Horde versions 3.0 up to 3.0.9 and 3.1.0 are vulnerable; other versions may also be affected.

Affected Products

  • Debian linux 3.1.0
  • Debian linux 3.1.0 Alpha
  • Debian linux 3.1.0 Amd64
  • Debian linux 3.1.0 Arm
  • Debian linux 3.1.0 Hppa
  • Debian linux 3.1.0 Ia-32
  • Debian linux 3.1.0 Ia-64
  • Debian linux 3.1.0 M68k
  • Debian linux 3.1.0 Mips
  • Debian linux 3.1.0 Mipsel
  • Debian linux 3.1.0 Ppc
  • Debian linux 3.1.0 S/390
  • Debian linux 3.1.0 Sparc
  • Gentoo linux
  • Horde_project horde 3.0.0
  • Horde_project horde 3.0.1
  • Horde_project horde 3.0.2
  • Horde_project horde 3.0.3
  • Horde_project horde 3.0.4
  • Horde_project horde 3.0.4 -RC 1
  • Horde_project horde 3.0.4 -RC 2
  • Horde_project horde 3.0.6
  • Horde_project horde 3.0.7
  • Horde_project horde 3.0.8
  • Horde_project horde 3.0.9
  • Horde_project horde 3.1
  • Suse linux_personal 10.0.0 OSS
  • Suse linux_personal 9.3.0
  • Suse linux_personal 9.3.0 X86 64
  • Suse linux_professional 10.0.0 OSS
  • Suse linux_professional 9.3.0
  • Suse linux_professional 9.3.0 X86 64

References

  • BugTraq: 17292
  • CVE: CVE-2006-1491
  • URL: http://lists.horde.org/archives/announce/2006/000271.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out