First published: Wed Sep 16 2020(Updated: )
An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Perl Dbi | <=1.643 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2014-10402.
The severity level of CVE-2014-10402 is medium.
The DBI module through version 1.643 for Perl is affected by CVE-2014-10402.
The CWE ID for CVE-2014-10402 is 732.
To fix CVE-2014-10402, update the DBI module to a version beyond 1.643.