CVE-2015-0935: Code Injection
Published May 25, 2015
·Updated
Bomgar Remote Support before 15.1.1 allows remote attackers to execute arbitrary PHP code via crafted serialized data to unspecified PHP scripts.
Affected Software
1 affected component
Bomgar Remote Support<=14.3.2
Remediation
Patch Available
Event History
May 25, 2015
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0935?
CVE-2015-0935 is rated as critical due to its ability to allow remote code execution through crafted serialized data.
2
How do I fix CVE-2015-0935?
To fix CVE-2015-0935, upgrade Bomgar Remote Support to version 15.1.1 or later.
3
What types of attacks are possible with CVE-2015-0935?
CVE-2015-0935 allows attackers to execute arbitrary PHP code remotely, posing significant risks to system security.
4
Which versions of Bomgar Remote Support are affected by CVE-2015-0935?
Bomgar Remote Support versions prior to 15.1.1, specifically versions up to and including 14.3.2, are affected by CVE-2015-0935.
5
Is CVE-2015-0935 related to remote support tools?
Yes, CVE-2015-0935 specifically targets vulnerabilities within Bomgar Remote Support that can be exploited remotely.