news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2021-47154

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
6.3 Medium
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Risk score
50.4
Published
2024-03-18
Status
Published

The Net::CIDR::Lite module before 0.22 for Perl does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

Weaknesses

CWE-noinfo Not enough information

Coverage 2

Advisories and references