Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8v7w-j6g2-p6j2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HTTP::Body::Multipart in the HTTP-Body 1.08, 1.17, and earlier module for Perl uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, which makes it easier for remote attackers to conduct attacks by leveraging subsequent behavior that may assume the suffix is well-formed.

HTTP::Body::Multipart in the HTTP-Body 1.08, 1.17, and earlier module for Perl uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, which makes it easier for remote attackers to conduct attacks by leveraging subsequent behavior that may assume the suffix is well-formed.

EPSS

Процентиль: 74%
0.0083
Низкий

Связанные уязвимости

ubuntu
около 12 лет назад

HTTP::Body::Multipart in the HTTP-Body module for Perl (1.07 through 1.22, before 1.23) uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, which makes it easier for remote attackers to conduct attacks by leveraging subsequent behavior that may assume the suffix is well-formed.

nvd
около 12 лет назад

HTTP::Body::Multipart in the HTTP-Body module for Perl (1.07 through 1.22, before 1.23) uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, which makes it easier for remote attackers to conduct attacks by leveraging subsequent behavior that may assume the suffix is well-formed.

debian
около 12 лет назад

HTTP::Body::Multipart in the HTTP-Body module for Perl (1.07 through 1 ...

EPSS

Процентиль: 74%
0.0083
Низкий