Language:
https://seclists.org/bugtraq/2005/Jun/286
Severity: High
ID: 18600
File Name: serendipity_xmlrpc_code_injection.nasl
Version: 1.26
Type: remote
Family: CGI abuses
Published: 7/1/2005
Updated: 4/11/2022
Configuration: Enable thorough checks
Supported Sensors: Nessus
Risk Factor: Medium
Score: 5.9
Risk Factor: High
Base Score: 7.5
Temporal Score: 6.2
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CPE: cpe:/a:s9y:serendipity
Required KB Items: www/serendipity
Excluded KB Items: Settings/disable_cgi_scanning
Exploit Ease: No exploit is required
Vulnerability Publication Date: 6/29/2005
Metasploit (PHP XML-RPC Arbitrary Code Execution)
CVE: CVE-2005-1921
BID: 14088