Lucene search

K
cvelistMitreCVELIST:CVE-2006-6629
HistoryDec 18, 2006 - 11:00 a.m.

CVE-2006-6629

2006-12-1811:00:00
mitre
www.cve.org

6.6 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.6%

lib/WeBWorK/PG/Translator.pm in WeBWorK Program Generation (PG) Language before 2.3.1 uses an insufficiently restrictive regular expression to determine valid macro filenames, which allows attackers to load arbitrary macro files whose names contain the strings (1) dangerousMacros.pl, (2) PG.pl, or (3) IO.pl.

6.6 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.6%

Related for CVELIST:CVE-2006-6629