CVE-2024-45321

The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network attackers.
Configurations

Configuration 1 (hide)

cpe:2.3:a:app\:\:cpanminus_project:app\:\:cpanminus:*:*:*:*:*:perl:*:*

History

05 Dec 2024, 18:47

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 8.1

Information

Published : 2024-08-27 04:15

Updated : 2024-12-05 18:47


NVD link : CVE-2024-45321

Mitre link : CVE-2024-45321

CVE.ORG link : CVE-2024-45321


JSON object : View

Products Affected

app\

  • \
CWE
CWE-494

Download of Code Without Integrity Check