Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ben Wheeler

#35480of 53,634
7.5Total CVSS
Vulnerabilities · 1
PT-2006-4678
7.5
2006-07-27
Twiki · Twiki · CVE-2006-3819
**Name of the Vulnerable Software and Affected Versions** TWiki versions 4.0.0 through 4.0.4 **Description** The issue allows remote attackers to execute arbitrary Perl code via an HTTP POST request containing a parameter name starting with `TYPEOF`. **Recommendations** For TWiki versions 4.0.0 through 4.0.4, consider restricting access to the configure script until a patch is available. As a temporary workaround, avoid using parameter names starting with `TYPEOF` in HTTP POST requests to minimize the risk of exploitation.