Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrw9-jqqp-jcq9

Опубликовано: 14 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Web::Passwd versions through 0.03 for Perl is vulnerable to RCE.

Web::Passwd is a small CGI application for managing htpasswd files using the htpasswd command.

The user parameter is not validated or escaped, and is used as the last argument on the command line, allowing for command injection.

Web::Passwd versions through 0.03 for Perl is vulnerable to RCE.

Web::Passwd is a small CGI application for managing htpasswd files using the htpasswd command.

The user parameter is not validated or escaped, and is used as the last argument on the command line, allowing for command injection.

EPSS

Процентиль: 74%
0.01653
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

Web::Passwd versions through 0.03 for Perl is vulnerable to RCE. Web::Passwd is a small CGI application for managing htpasswd files using the htpasswd command. The user parameter is not validated or escaped, and is used as the last argument on the command line, allowing for command injection.

EPSS

Процентиль: 74%
0.01653
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78