Candidate: CVE-2011-4075 PublicDate: 2011-11-02 17:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4075 Description: The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a query_engine action to cmd.php, as exploited in the wild in October 2011. Ubuntu-Description: Notes: Bugs: http://sourceforge.net/tracker/index.php?func=detail&aid=3417184&group_id=61828&atid=498546 https://bugs.launchpad.net/ubuntu/precise/+source/phpldapadmin/+bug/887290 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_phpldapadmin: upstream: http://phpldapadmin.git.sourceforge.net/git/gitweb.cgi?p=phpldapadmin/phpldapadmin;a=commit;h=76e6dad13ef77c5448b8dfed1a61e4acc7241165 vendor: http://www.debian.org/security/2011/dsa-2333 upstream_phpldapadmin: released (1.2.0.5-2.1) hardy_phpldapadmin: ignored (reached end-of-life) lucid_phpldapadmin: released (1.2.0.5-1ubuntu1.10.04.2) maverick_phpldapadmin: released (1.2.0.5-1.1ubuntu1.1) natty_phpldapadmin: released (1.2.0.5-2ubuntu1.11.04.1) oneiric_phpldapadmin: released (1.2.0.5-2ubuntu1.11.10.1) devel_phpldapadmin: not-affected (1.2.0.5-2.1ubuntu1)