Show filters
333 Total Results
Displaying 81-90 of 333
Sort by:
Attacker Value
Unknown
CVE-2013-4184
Disclosure Date: December 10, 2019 (last updated March 28, 2024)
Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks
0
Attacker Value
Unknown
CVE-2010-3438
Disclosure Date: November 12, 2019 (last updated October 06, 2023)
libpoe-component-irc-perl before v6.32 does not remove carriage returns and line feeds. This can be used to execute arbitrary IRC commands by passing an argument such as "some text\rQUIT" to the 'privmsg' handler, which would cause the client to disconnect from the server.
0
Attacker Value
Unknown
CVE-2013-1751
Disclosure Date: November 07, 2019 (last updated October 06, 2023)
TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' parameter value containing Perl backtick characters.
0
Attacker Value
Unknown
CVE-2018-20911
Disclosure Date: August 01, 2019 (last updated October 06, 2023)
cPanel before 70.0.23 allows code execution because "." is in @INC during a Perl syntax check of cpaddonsup (SEC-359).
0
Attacker Value
Unknown
CVE-2019-1010161
Disclosure Date: July 25, 2019 (last updated October 06, 2023)
perl-CRYPT-JWT 0.022 and earlier is affected by: Incorrect Access Control. The impact is: bypass authentication. The component is: JWT.pm for JWT security token, line 614 in _decode_jws(). The attack vector is: network connectivity(crafting user-controlled input to bypass authentication). The fixed version is: 0.023.
0
Attacker Value
Unknown
CVE-2019-1010263
Disclosure Date: July 17, 2019 (last updated October 06, 2023)
Perl Crypt::JWT prior to 0.023 is affected by: Incorrect Access Control. The impact is: allow attackers to bypass authentication by providing a token by crafting with hmac(). The component is: JWT.pm, line 614. The attack vector is: network connectivity. The fixed version is: after commit b98a59b42ded9f9e51b2560410106207c2152d6c.
0
Attacker Value
Unknown
CVE-2019-20327
Disclosure Date: April 19, 2019 (last updated October 06, 2023)
Insecure permissions in cwrapper_perl in Centreon Infrastructure Monitoring Software through 19.10 allow local attackers to gain privileges. (cwrapper_perl is a setuid executable allowing execution of Perl scripts with root privileges.)
0
Attacker Value
Unknown
CVE-2018-18313
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process memory.
0
Attacker Value
Unknown
CVE-2018-18311
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
0
Attacker Value
Unknown
CVE-2018-18314
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
0