Security Advisory

CVE-2011-2766

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-09-23 10:00:00
Last updated 2024-08-06 23:15:30
Assigner mitre
State PUBLISHED

Description

The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via crafted HTTP headers.