Cpan\
Products
12- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 0 CVEs
- 0 CVEs
- 0 CVEs
Recent CVEs
9| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2008-7315 | Cri | 0.64 | 9.8 | 0.03 | Oct 10, 2017 | UI-Dialog 1.09 and earlier allows remote attackers to execute arbitrary commands. | ||
| CVE-2020-16156 | Hig | 0.51 | 7.8 | 0.01 | Dec 13, 2021 | CPAN 2.28 allows Signature Verification Bypass. | ||
| CVE-2011-4117 | Hig | 0.49 | 7.5 | 0.01 | Jan 31, 2020 | The Batch::BatchRun module 1.03 for Perl does not properly handle temporary files. | ||
| CVE-2011-4115 | Hig | 0.49 | 7.5 | 0.02 | Jan 31, 2020 | Parallel::ForkManager module before 1.0.0 for Perl does not properly handle temporary files. | ||
| CVE-2020-16155 | Med | 0.42 | 6.5 | 0.01 | Dec 13, 2021 | The CPAN::Checksums package 2.12 for Perl does not uniquely define signed data. | ||
| CVE-2013-4184 | Med | 0.36 | 5.5 | 0.01 | Dec 10, 2019 | Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks | ||
| CVE-2011-4116 | Low | 0.21 | 3.3 | 0.01 | Jan 31, 2020 | _is_safe in the File::Temp module for Perl does not properly handle symlinks. | ||
| CVE-2011-2201 | 0.04 | — | 0.07 | Sep 14, 2011 | The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input. | |||
| CVE-2004-2332 | 0.00 | — | 0.01 | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in CPAN WWW::Form before 1.13 allow remote attackers to inject arbitrary web script or HTML via unknown vectors. |
- risk 0.64cvss 9.8epss 0.03
UI-Dialog 1.09 and earlier allows remote attackers to execute arbitrary commands.
- risk 0.51cvss 7.8epss 0.01
CPAN 2.28 allows Signature Verification Bypass.
- risk 0.49cvss 7.5epss 0.01
The Batch::BatchRun module 1.03 for Perl does not properly handle temporary files.
- risk 0.49cvss 7.5epss 0.02
Parallel::ForkManager module before 1.0.0 for Perl does not properly handle temporary files.
- risk 0.42cvss 6.5epss 0.01
The CPAN::Checksums package 2.12 for Perl does not uniquely define signed data.
- risk 0.36cvss 5.5epss 0.01
Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks
- risk 0.21cvss 3.3epss 0.01
_is_safe in the File::Temp module for Perl does not properly handle symlinks.
- CVE-2011-2201Sep 14, 2011risk 0.04cvss —epss 0.07
The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.
- CVE-2004-2332Dec 31, 2004risk 0.00cvss —epss 0.01
Multiple cross-site scripting (XSS) vulnerabilities in CPAN WWW::Form before 1.13 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.