VYPR

CGI::Application

by CGI::Application

CVEs (3)

  • CVE-2023-42132MedOct 2, 2023
    risk 0.36cvss 5.5epss 0.00

    FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.

  • CVE-2013-7329Oct 6, 2014
    risk 0.00cvss epss 0.02

    The CGI::Application module before 4.50_50 and 4.50_51 for Perl, when run modes are not specified, allows remote attackers to obtain sensitive information (web queries and environment details) via vectors related to the dump_html function.

  • CVE-2008-7029Aug 24, 2009
    risk 0.00cvss epss 0.02

    Unrestricted file upload vulnerability in usercp.php in AlilG Application AliBoard Beta allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as an avatar, then accessing it via a direct request to the file in…