This script is Copyright (C) 2011-2014 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-201111-04
(phpDocumentor: Function call injection)
phpDocumentor bundles Smarty with the modifier.regex_replace.php plug-in
which does not properly sanitize input related to the ASCII NUL character
in a search string.
A remote attacker could call arbitrary PHP functions via templates.
There is no known workaround at this time.
See also :
All phpDocumentor users should upgrade to the latest stable version:
# emerge --sync
# emerge --ask --oneshot --verbose
NOTE: This is a legacy GLSA. Updates for all affected architectures are
available since February 12, 2011. It is likely that your system is
already no longer affected by this issue.
Risk factor :
High / CVSS Base Score : 7.5
CVSS Temporal Score : 6.2
Public Exploit Available : true