CVE-2012-6143 Information

Description

Spoon::Cookie in the Spoon module 0.24 for Perl does not properly use the Storable::thaw function which allows remote attackers to execute arbitrary code via a crafted request which is not properly handled when it is deserialized.

Reference

http://seclists.org/oss-sec/2013/q2/318 http://www.securityfocus.com/bid/59834 https://exchange.xforce.ibmcloud.com/vulnerabilities/84197 https://rt.cpan.org/Public/Bug/Display.html?id=85217

Share on: