CVE-2011-2766
EPSS 0.26%libfcgi-perl - authentication bypass
發布日:2011/9/23修改日:2026/4/28
也稱為:DEBIAN-CVE-2011-2766
描述
The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via crafted HTTP headers.
受影響套件(2)
- Debian/libfcgi-perlfrom 0, < 0.73-2
- Debian/libfcgi-perlfrom 0, < 0.71-1+squeeze1