Title : TikiWiki XML-RPC Library Remote Code Execution Vulnerability VUPEN ID : VUPEN/ADV-2005-0985 CVE ID : CVE-2005-1921 CWE ID : CWE-
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-07-06
Technical Description
A vulnerability was identified in TikiWiki, which could be exploited by remote attackers to execute arbitrary commands. This flaw is due to an input validation error in the Pear XML-RPC library, which could be exploited by attackers to execute arbitrary commands and compromise a vulnerable web server. For additional information, see : VUPEN/ADV-2005-0911