Total vulnerabilities in the database
desktop.php in eyeOS 0.8.9 and earlier tests for the existence of the _SESSION variable before calling the session_start function, which allows remote attackers to execute arbitrary PHP code and possibly conduct other attacks by modifying critical assumed-immutable variables, as demonstrated using PHP code in the _SESSION[apps][eyeOptions.eyeapp][wrapup] variable.
Software | From | Fixed in |
---|---|---|
eyeos_project / eyeos | 0.8.2_r1 | 0.8.2_r1.x |
eyeos_project / eyeos | 0.8.5 | 0.8.5.x |
eyeos_project / eyeos | 0.8.9 | 0.8.9.x |
eyeos_project / eyeos | 0.8.3_r1 | 0.8.3_r1.x |
eyeos_project / eyeos | 0.8.2_r3 | 0.8.2_r3.x |
eyeos_project / eyeos | 0.8.4_r1 | 0.8.4_r1.x |
eyeos_project / eyeos | 0.8.3 | 0.8.3.x |
eyeos_project / eyeos | 0.8.4 | 0.8.4.x |
eyeos_project / eyeos | 0.8.2_r2 | 0.8.2_r2.x |
eyeos_project / eyeos | 0.8.3_r2 | 0.8.3_r2.x |
eyeos_project / eyeos | 0.8.6 | 0.8.6.x |
eyeos_project / eyeos | 0.8 | 0.8.x |
eyeos_project / eyeos | 0.8.1_r1 | 0.8.1_r1.x |
eyeos_project / eyeos | 0.8.8 | 0.8.8.x |
eyeos_project / eyeos | 0.8.2 | 0.8.2.x |
eyeos_project / eyeos | 0.8.7 | 0.8.7.x |
eyeos_project / eyeos | 0.8.5_r1 | 0.8.5_r1.x |
eyeos_project / eyeos | 0.8.1 | 0.8.1.x |