2.1

CVE-2004-2022

Exploit

ActivePerl 5.8.x and others, and Larry Wall's Perl 5.6.1 and others, when running on Windows systems, allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long argument to the system command, which leads to a stack-based buffer overflow.  NOTE: it is unclear whether this bug is in Perl or the OS API that is used by Perl.

Data is provided by the National Vulnerability Database (NVD)
ActivestateActiveperl Version5.6.1
ActivestateActiveperl Version5.6.1.630
ActivestateActiveperl Version5.6.2
ActivestateActiveperl Version5.6.3
ActivestateActiveperl Version5.7.1
ActivestateActiveperl Version5.7.2
ActivestateActiveperl Version5.7.3
ActivestateActiveperl Version5.8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.74% 0.817
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:N/A:P