Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2201

Опубликовано: 14 сент. 2011
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 4.3

Описание

The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.

РелизСтатусПримечание
devel

not-affected

4.66-3
hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

not-affected

4.66-3
precise

not-affected

4.66-3
quantal

not-affected

4.66-3
raring

not-affected

4.66-3
saucy

not-affected

4.66-3

Показывать по

Ссылки на источники

EPSS

Процентиль: 93%
0.11134
Средний

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.

debian
больше 14 лет назад

The Data::FormValidator module 4.66 and earlier for Perl, when untaint ...

github
больше 3 лет назад

The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.

EPSS

Процентиль: 93%
0.11134
Средний

4.3 Medium

CVSS2