Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-125112

Опубликовано: 26 мар. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Plack::Middleware::Session::Cookie versions through 0.21 for Perl allows remote code execution.

Plack::Middleware::Session::Cookie versions through 0.21 has a security vulnerability where it allows an attacker to execute arbitrary code on the server during deserialization of the cookie data, when there is no secret used to sign the cookie.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:miyagawa:plack\:\:middleware\:\:session\:\:cookie:*:*:*:*:*:perl:*:*
Версия до 0.23 (исключая)

EPSS

Процентиль: 55%
0.0083
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-565

Связанные уязвимости

CVSS3: 9.8
ubuntu
5 месяцев назад

Plack::Middleware::Session::Cookie versions through 0.21 for Perl allows remote code execution. Plack::Middleware::Session::Cookie versions through 0.21 has a security vulnerability where it allows an attacker to execute arbitrary code on the server during deserialization of the cookie data, when there is no secret used to sign the cookie.

CVSS3: 9.8
debian
5 месяцев назад

Plack::Middleware::Session::Cookie versions through 0.21 for Perl allo ...

CVSS3: 9.8
github
5 месяцев назад

Plack::Middleware::Session::Cookie versions through 0.21 for Perl allows remote code execution. Plack::Middleware::Session::Cookie versions through 0.21 has a security vulnerability where it allows an attacker to execute arbitrary code on the server during deserialization of the cookie data, when there is no secret used to sign the cookie.

EPSS

Процентиль: 55%
0.0083
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-565