Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-5526

EPSS 1.72% · P83
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-5526

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might allow remote attackers to inject arbitrary headers into responses from applications that use CGI.pm.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Perl CGI.pm ‘Set-Cookied’和‘P3P’头HTTP头注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CGI.pm是用途广泛的Perl模块,为编程公共网关接口(CGI)应用,提供一致API为接受用户输入和生产HTML或XHTML产品。 Perl CGI.pm早期版本至3.63版本中存在任意HTTP头注入漏洞,该漏洞源于没有充分验证用户提供的输入。攻击者利用该漏洞注入任意HTTP头到服务器响应。可发起跨站请求伪造,跨站脚本以及HTTP请求走私漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-5526

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-5526

Please Login to view more intelligence information

Same Patch Batch · n/a · 2012-11-21 · 45 CVEs total

CVE-2012-5481Moodle 权限许可和访问控制问题漏洞
CVE-2012-5835Mozilla Firefox/Thunderbird/SeaMonkey WebGL数字错误漏洞
CVE-2012-5833Mozilla Firefox/SeaMonkey/Thunderbird texImage2D实现权限许可和访问控制问题漏洞
CVE-2012-5836Mozilla Firefox/Thunderbird/SeaMonkey 代码注入漏洞
CVE-2012-5839Mozilla Firefox/SeaMonkey/Thunderbird 缓冲区错误漏洞
CVE-2012-5840Mozilla Firefox/SeaMonkey/Thunderbird 资源管理错误漏洞
CVE-2012-5841Mozilla Firefox/SeaMonkey/Thunderbird 跨站脚本漏洞
CVE-2012-5842Mozilla Firefox/SeaMonkey/Thunderbird 拒绝服务漏洞
CVE-2012-5843Mozilla Firefox/SeaMonkey/Thunderbird 安全漏洞
CVE-2012-5838Mozilla Firefox/Thunderbird/SeaMonkey 数字错误漏洞
CVE-2012-5829Mozilla Firefox/SeaMonkey/Thunderbird ‘nsWindow::OnExposeEvent’函数缓冲区错误漏洞
CVE-2012-5480Moodle Database活动模块权限许可和访问控制问题漏洞
CVE-2012-5479Moodle Portfolio插件权限许可和访问控制问题漏洞
CVE-2012-5473Moodle Database活动模块信息泄露漏洞
CVE-2012-5472Moodle lib/formslib.php 权限许可和访问控制漏洞
CVE-2012-5471Moodle ropbox Repository File Picker 权限许可和访问控制问题漏洞
CVE-2012-4218Mozilla Firefox/SeaMonkey/Thunderbird ‘BuildTextRunsScanner::BreakSink::SetBreaks’函数资源管理错误
CVE-2012-4217Mozilla Firefox/SeaMonkey/Thunderbird ‘nsViewManager::ProcessPendingUpdates’函数资源管理错误漏洞
CVE-2012-4216Mozilla Firefox/SeaMonkey/Thunderbird ‘gfxFont::GetFontEntry’函数资源管理错误漏洞
CVE-2012-4215Mozilla Firefox/SeaMonkey/Thunderbird ‘nsPlaintextEditor::FireClipboardEvent’函数资源管理错误漏洞

Showing top 20 of 45 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2012-5526

No comments yet


Leave a comment