7.5
CVSSv2

CVE-2017-12814

Published: 28/09/2017 Updated: 15/07/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the CPerlHost::Add method in win32/perlhost.h in Perl prior to 5.24.3-RC1 and 5.26.x prior to 5.26.1-RC1 on Windows allows malicious users to execute arbitrary code via a long environment variable.

Vulnerable Product Search on Vulmon Subscribe to Product

perl perl

perl perl 5.26.0