Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:PHP:HORDE-EVAL

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Horde Arbitrary PHP Code Injection

Release Date

2006/05/04

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Horde Arbitrary PHP Code Injection


This signature detects a maliciously crafted HTTP request designed to exploit an insecure eval() statement in Horde PHP. A successful attack can lead to remote arbitrary code execution. An exploit for this vulnerability is currently available.

Extended Description

Horde is prone to a remote PHP code-execution vulnerability. An attacker can exploit this issue to execute arbitrary malicious PHP code and in the context of the webserver process. This may help the attacker compromise the application and the underlying system; other attacks are also possible. Horde versions 3.0 up to 3.0.9 and 3.1.0 are vulnerable; other versions may also be affected.

Affected Products

  • Debian Linux 3.1.0
  • Debian Linux 3.1.0 Alpha
  • Debian Linux 3.1.0 Amd64
  • Debian Linux 3.1.0 Arm
  • Debian Linux 3.1.0 Hppa
  • Debian Linux 3.1.0 Ia-32
  • Debian Linux 3.1.0 Ia-64
  • Debian Linux 3.1.0 M68k
  • Debian Linux 3.1.0 Mips
  • Debian Linux 3.1.0 Mipsel
  • Debian Linux 3.1.0 Ppc
  • Debian Linux 3.1.0 S/390
  • Debian Linux 3.1.0 Sparc
  • Gentoo Linux
  • Horde Project Horde 3.0.0
  • Horde Project Horde 3.0.1
  • Horde Project Horde 3.0.2
  • Horde Project Horde 3.0.3
  • Horde Project Horde 3.0.4
  • Horde Project Horde 3.0.4 -RC 1
  • Horde Project Horde 3.0.4 -RC 2
  • Horde Project Horde 3.0.6
  • Horde Project Horde 3.0.7
  • Horde Project Horde 3.0.8
  • Horde Project Horde 3.0.9
  • Horde Project Horde 3.1
  • SuSE Linux Personal 10.0.0 OSS
  • SuSE Linux Personal 9.3.0
  • SuSE Linux Personal 9.3.0 X86 64
  • SuSE Linux Professional 10.0.0 OSS
  • SuSE Linux Professional 9.3.0
  • SuSE Linux Professional 9.3.0 X86 64

References

  • BugTraq: 17292
  • CVE: CVE-2006-1491
  • URL: http://lists.horde.org/archives/announce/2006/000271.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out