CVE-2011-4075: Code Injection
Published Nov 2, 2011
·Updated
The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a queryengine action to cmd.php, as exploited in the wild in October 2011.
Affected Software
8 affected components
Phpldapadmin Project Phpldapadmin=1.2.0
Phpldapadmin Project Phpldapadmin=1.2.0.1
Phpldapadmin Project Phpldapadmin=1.2.0.2
Phpldapadmin Project Phpldapadmin=1.2.0.3
Phpldapadmin Project Phpldapadmin=1.2.0.4
Phpldapadmin Project Phpldapadmin=1.2.0.5
Phpldapadmin Project Phpldapadmin=1.2.1
Phpldapadmin Project Phpldapadmin=1.2.1.1
Remediation
Patch Available
Patch Available
Event History
Nov 2, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4075?
CVE-2011-4075 is considered a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2011-4075?
To fix CVE-2011-4075, upgrade phpLDAPadmin to version 1.2.2 or later.
3
What versions of phpLDAPadmin are affected by CVE-2011-4075?
CVE-2011-4075 affects phpLDAPadmin versions 1.2.0 through 1.2.1.1.
4
Can CVE-2011-4075 be exploited remotely?
Yes, CVE-2011-4075 can be exploited remotely by attackers through the orderby parameter.
5
What are the potential impacts of CVE-2011-4075?
The impacts of CVE-2011-4075 include arbitrary PHP code execution on the affected server.