CVE-2008-5305

EUVD-2008-5282
Eval injection vulnerability in TWiki before 4.2.4 allows remote attackers to execute arbitrary Perl code via the %SEARCH{}% variable.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 87%
Affected Products (NVD)
VendorProductVersion
twikitwiki
𝑥
≤ 4.2.3
twikitwiki
4.0.0
twikitwiki
4.0.1
twikitwiki
4.0.2
twikitwiki
4.0.3
twikitwiki
4.0.4
twikitwiki
4.0.5
twikitwiki
4.1.0
twikitwiki
4.1.1
twikitwiki
4.1.2
twikitwiki
4.2.0
twikitwiki
4.2.1
twikitwiki
4.2.2
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
twiki
dapper
ignored
gutsy
ignored
hardy
ignored
intrepid
ignored
jaunty
ignored
karmic
ignored
lucid
dne
maverick
dne
natty
dne
oneiric
dne
precise
dne
quantal
dne
raring
dne