Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Perlpodder Subscribe
Filtered by product Perlpodder
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-2548 2 Perlpodder, Prodder 2 Perlpodder, Prodder 2018-10-18 7.5 HIGH N/A
Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget.
CVE-2006-2550 1 Perlpodder 1 Perlpodder 2018-10-18 5.1 MEDIUM N/A
perlpodder before 0.5 allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast, which are executed when saving the URL to a log file. NOTE: the wget vector is already covered by CVE-2006-2548.