Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j7c8-7vgp-wfmc

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

EPSS

Процентиль: 99%
0.81049
Высокий

Дефекты

CWE-74

Связанные уязвимости

ubuntu
почти 11 лет назад

Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

nvd
почти 11 лет назад

Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

debian
почти 11 лет назад

Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and ...

EPSS

Процентиль: 99%
0.81049
Высокий

Дефекты

CWE-74