Loading
The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTPS URL to an SSL protected web page, which is not properly handled by the fetch function.
Use CWE-20, Snoopy vendor hub and Snoopy product page to widen CVE-2005-3330 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2014-5009, CVE-2014-5008 and CVE-2008-7313 for nearby disclosures in the same product family.