Filtered by vendor Perlpodder
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2006-2548 | 2 Perlpodder, Prodder | 2 Perlpodder, Prodder | 2018-10-18 | 7.5 HIGH | N/A |
Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget. | |||||
CVE-2006-2550 | 1 Perlpodder | 1 Perlpodder | 2018-10-18 | 5.1 MEDIUM | N/A |
perlpodder before 0.5 allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast, which are executed when saving the URL to a log file. NOTE: the wget vector is already covered by CVE-2006-2548. |