CVE Vulnerabilities

CVE-2011-2201

Published: Sep 14, 2011 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
LOW

The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism via form input.

Affected Software

Name Vendor Start Version End Version
Data::formvalidator Mark_stosberg * 4.66 (including)
Data::formvalidator Mark_stosberg 1.3 (including) 1.3 (including)
Data::formvalidator Mark_stosberg 1.4 (including) 1.4 (including)
Data::formvalidator Mark_stosberg 1.5 (including) 1.5 (including)
Data::formvalidator Mark_stosberg 1.5.1 (including) 1.5.1 (including)
Data::formvalidator Mark_stosberg 1.6 (including) 1.6 (including)
Data::formvalidator Mark_stosberg 1.7 (including) 1.7 (including)
Data::formvalidator Mark_stosberg 1.8 (including) 1.8 (including)
Data::formvalidator Mark_stosberg 1.9 (including) 1.9 (including)
Data::formvalidator Mark_stosberg 1.10 (including) 1.10 (including)
Data::formvalidator Mark_stosberg 1.11 (including) 1.11 (including)
Data::formvalidator Mark_stosberg 1.91 (including) 1.91 (including)
Data::formvalidator Mark_stosberg 1.92 (including) 1.92 (including)
Data::formvalidator Mark_stosberg 1.93 (including) 1.93 (including)
Data::formvalidator Mark_stosberg 2.00 (including) 2.00 (including)
Data::formvalidator Mark_stosberg 2.01 (including) 2.01 (including)
Data::formvalidator Mark_stosberg 2.02 (including) 2.02 (including)
Data::formvalidator Mark_stosberg 2.03 (including) 2.03 (including)
Data::formvalidator Mark_stosberg 2.04 (including) 2.04 (including)
Data::formvalidator Mark_stosberg 2.10 (including) 2.10 (including)
Data::formvalidator Mark_stosberg 2.11_01 (including) 2.11_01 (including)
Data::formvalidator Mark_stosberg 2.11_02 (including) 2.11_02 (including)
Data::formvalidator Mark_stosberg 2.11_03 (including) 2.11_03 (including)
Data::formvalidator Mark_stosberg 2.11_04 (including) 2.11_04 (including)
Data::formvalidator Mark_stosberg 3.00 (including) 3.00 (including)
Data::formvalidator Mark_stosberg 3.01 (including) 3.01 (including)
Data::formvalidator Mark_stosberg 3.10 (including) 3.10 (including)
Data::formvalidator Mark_stosberg 3.11 (including) 3.11 (including)
Data::formvalidator Mark_stosberg 3.12 (including) 3.12 (including)
Data::formvalidator Mark_stosberg 3.13 (including) 3.13 (including)
Data::formvalidator Mark_stosberg 3.14 (including) 3.14 (including)
Data::formvalidator Mark_stosberg 3.15 (including) 3.15 (including)
Data::formvalidator Mark_stosberg 3.49_1 (including) 3.49_1 (including)
Data::formvalidator Mark_stosberg 3.50 (including) 3.50 (including)
Data::formvalidator Mark_stosberg 3.51 (including) 3.51 (including)
Data::formvalidator Mark_stosberg 3.52 (including) 3.52 (including)
Data::formvalidator Mark_stosberg 3.53 (including) 3.53 (including)
Data::formvalidator Mark_stosberg 3.54 (including) 3.54 (including)
Data::formvalidator Mark_stosberg 3.55 (including) 3.55 (including)
Data::formvalidator Mark_stosberg 3.56 (including) 3.56 (including)
Data::formvalidator Mark_stosberg 3.57 (including) 3.57 (including)
Data::formvalidator Mark_stosberg 3.58 (including) 3.58 (including)
Data::formvalidator Mark_stosberg 3.59 (including) 3.59 (including)
Data::formvalidator Mark_stosberg 3.60 (including) 3.60 (including)
Data::formvalidator Mark_stosberg 3.61 (including) 3.61 (including)
Data::formvalidator Mark_stosberg 3.62 (including) 3.62 (including)
Data::formvalidator Mark_stosberg 3.63 (including) 3.63 (including)
Data::formvalidator Mark_stosberg 4.00 (including) 4.00 (including)
Data::formvalidator Mark_stosberg 4.01 (including) 4.01 (including)
Data::formvalidator Mark_stosberg 4.02 (including) 4.02 (including)
Data::formvalidator Mark_stosberg 4.10 (including) 4.10 (including)
Data::formvalidator Mark_stosberg 4.11 (including) 4.11 (including)
Data::formvalidator Mark_stosberg 4.12 (including) 4.12 (including)
Data::formvalidator Mark_stosberg 4.13 (including) 4.13 (including)
Data::formvalidator Mark_stosberg 4.14 (including) 4.14 (including)
Data::formvalidator Mark_stosberg 4.20 (including) 4.20 (including)
Data::formvalidator Mark_stosberg 4.30 (including) 4.30 (including)
Data::formvalidator Mark_stosberg 4.40 (including) 4.40 (including)
Data::formvalidator Mark_stosberg 4.49_01 (including) 4.49_01 (including)
Data::formvalidator Mark_stosberg 4.50 (including) 4.50 (including)
Data::formvalidator Mark_stosberg 4.51 (including) 4.51 (including)
Data::formvalidator Mark_stosberg 4.52 (including) 4.52 (including)
Data::formvalidator Mark_stosberg 4.53 (including) 4.53 (including)
Data::formvalidator Mark_stosberg 4.54 (including) 4.54 (including)
Data::formvalidator Mark_stosberg 4.55 (including) 4.55 (including)
Data::formvalidator Mark_stosberg 4.56 (including) 4.56 (including)
Data::formvalidator Mark_stosberg 4.57 (including) 4.57 (including)
Data::formvalidator Mark_stosberg 4.60 (including) 4.60 (including)
Data::formvalidator Mark_stosberg 4.61 (including) 4.61 (including)
Data::formvalidator Mark_stosberg 4.62 (including) 4.62 (including)
Data::formvalidator Mark_stosberg 4.63 (including) 4.63 (including)
Data::formvalidator Mark_stosberg 4.65 (including) 4.65 (including)
Libdata-formvalidator-perl Ubuntu hardy *
Libdata-formvalidator-perl Ubuntu lucid *
Libdata-formvalidator-perl Ubuntu maverick *
Libdata-formvalidator-perl Ubuntu natty *

References