CVE-2006-0782
Published Feb 19, 2006
Last updated 6 years ago
Overview
- Description
- Unspecified vulnerability in weblog.pl in PerlBlog 1.09b and earlier allows remote attackers to create arbitrary files and possibly execute arbitrary code via unspecified attack vectors related to improper handling of (1) the reply parameter, possibly involving injection of (2) the name parameter and (3) the body parameter.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:perlblog:perlblog:1.08:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9A7C823-EC74-44F3-9BC6-68F105A52D9C" }, { "criteria": "cpe:2.3:a:perlblog:perlblog:1.09:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF34B62B-C752-4167-AEBD-C28C9CC2FFC6" }, { "criteria": "cpe:2.3:a:perlblog:perlblog:1.09b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14572A2A-3D9D-438A-B331-FA95B10269BB" } ], "operator": "OR" } ] } ]