← Back

CVE-2012-6141

nvd nist
Published: Jun 4, 2014Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The App::Context module 0.01 through 0.968 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request to (1) App::Session::Cookie or (2) App::Session::HTMLHidden, which is not properly handled when it is deserialized.

Affected (13)

Products: Stephen Adkins: App\
App\
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Stephen Adkins
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context
Version \ context

References (4)

Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.