CVE-2005-4261Software CP vulnerability

2 documents2 sources
Severity
7.8HIGHNVD
EPSS
0.7%
top 27.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 15
Latest updateMay 1

Description

Unspecified vulnerability in Positive Software Corporation CP+ (cpplus) before 2.5.5 allows attackers to have unknown impact and attack vectors, related to "a possible security flaw caused by a bug in Perl." NOTE: unless CP+ includes its own copy of Perl with CVE-2005-3962, this is a different vulnerability than CVE-2005-3962; however, there is insufficient information to be sure.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

NVDpositive_software/cp6 versions+5

Patches

🔴Vulnerability Details

1
GHSA
GHSA-rc8p-8p78-4qgh: Unspecified vulnerability in Positive Software Corporation CP+ (cpplus) before 22022-05-01