PT-2009-4965 · Perl · Perl Cgi
Published
2009-07-21
·
Updated
2017-08-17
·
CVE-2009-2565
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Perl CGI's By Mrs. Shiromuku shiromuku(fs6)DIARY version 2.40
Description
The issue is related to a cross-site scripting (XSS) vulnerability, which allows remote attackers to inject arbitrary web script or HTML. This can be achieved via unspecified vectors, potentially affecting the security of the application.
Recommendations
For version 2.40, update to a newer version that contains a fix for this issue, as using an outdated version poses a significant risk. If no newer version is available, consider implementing additional security measures to restrict the injection of malicious scripts.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Perl Cgi