PT-2009-4965 · Perl · Perl Cgi
Publicado
2009-07-21
·
Atualizado
2017-08-17
·
CVE-2009-2565
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Perl CGI's By Mrs. Shiromuku shiromuku(fs6)DIARY version 2.40
Description
The issue is related to a cross-site scripting (XSS) vulnerability, which allows remote attackers to inject arbitrary web script or HTML. This can be achieved via unspecified vectors, potentially affecting the security of the application.
Recommendations
For version 2.40, update to a newer version that contains a fix for this issue, as using an outdated version poses a significant risk. If no newer version is available, consider implementing additional security measures to restrict the injection of malicious scripts.
Correção
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Perl Cgi