CVE-2011-2201
14.09.2011, 16:05
The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mark_stosberg | data\ | 𝑥 ≤ 4.66 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References