Описание
Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jochen_wiedmann:html\:\:ep:0.2011:*:*:*:*:perl:*:*
EPSS
Процентиль: 82%
0.0169
Низкий
7.5 High
CVSS2
Дефекты
CWE-94
Связанные уязвимости
github
больше 3 лет назад
Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.
EPSS
Процентиль: 82%
0.0169
Низкий
7.5 High
CVSS2
Дефекты
CWE-94