CVE-2013-7284

The PlRPC module, possibly 0.2020 and earlier, for Perl uses the Storable module, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:malcolm_nooning:pirpc:*:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2000:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2001:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2002:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2003:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2010:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2011:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2012:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2013:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2014:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2016:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2017:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2018:*:*:*:*:perl:*:*
cpe:2.3:a:malcolm_nooning:pirpc:0.2019:*:*:*:*:perl:*:*

History

No history.

Information

Published : 2014-04-29 14:38

Updated : 2024-02-04 18:35


NVD link : CVE-2013-7284

Mitre link : CVE-2013-7284

CVE.ORG link : CVE-2013-7284


JSON object : View

Products Affected

malcolm_nooning

  • pirpc
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')