VYPR
Vendor

Catalyst Plugin Static Simple Project

Products
1
CVEs
1
Across products
1
Status
Private

Products

1

Recent CVEs

1
  • CVE-2017-16248HigNov 1, 2017
    risk 0.49cvss 7.5epss 0.00

    The Catalyst-Plugin-Static-Simple module before 0.34 for Perl allows remote attackers to read arbitrary files if there is a '.' character anywhere in the pathname, which differs from the intended policy of allowing access only when the filename itself has a '.' character.