CVE-2014-8731 - RCE in phpMemcachedAdmin <=1.2.2

2014-11-12 Thread cert
CVE-2014-8731 CVSSv2 Vector: [AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:U/RC:C] CVSSv2 Base Score=10.0 CVSSv2 Temp Score=9.5 OWASP Top 10 classification: A1 - Injection PHPMemcachedAdmin is a web-based frontend for Linux's memcached Daemon. Project Homepage: https://code.google.com/p/phpmemcacheadmin/

Re: CVE-2014-8731 - RCE in phpMemcachedAdmin <=1.2.2

2014-11-13 Thread cert
We successfully contacted the author. He is currently working on patching the issue in the next version.