CVE-2014-2935

Publication date

2014-05-08 10:00:00

Family

certcc

State

PUBLISHED

Description

costview3/xmlrpc_server/xmlrpc.php in CostView in Caldera 9.20 allows remote attackers to execute arbitrary commands via shell metacharacters in a methodCall element in a PHP XMLRPC request.