CVE-2015-1592: High severity Debian Debian Linux vulnerability
Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1592?
CVE-2015-1592 is classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2015-1592?
To fix CVE-2015-1592, upgrade Movable Type Pro, Open Source, and Advanced to version 5.2.12 or higher, or to version 6.0.7 or higher.
What versions are affected by CVE-2015-1592?
CVE-2015-1592 affects Movable Type Pro, Open Source, and Advanced versions prior to 5.2.12 and Pro and Advanced 6.0.x versions before 6.0.7.
What types of attacks can be executed using CVE-2015-1592?
CVE-2015-1592 allows remote attackers to include and execute arbitrary local Perl files, potentially leading to arbitrary code execution.
Is CVE-2015-1592 related to Perl vulnerabilities?
Yes, CVE-2015-1592 is related to improper usage of the Perl Storable::thaw function, which creates the vulnerability.