CVE-2024-55918

A

n issue was discovered in the Graphics::ColorNames package before 3.2.0 for Perl. There is an ambiguity between modules and filenames that can lead to HTML injection by an attacker who can create a file in the current working directory.

Configurations

No configuration.

History

17 Dec 2024, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
CWE CWE-94

13 Dec 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-13 07:15

Updated : 2024-12-17 20:15


NVD link : CVE-2024-55918

Mitre link : CVE-2024-55918

CVE.ORG link : CVE-2024-55918


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')