Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2015-3409
Untrusted search path vulnerability in Module::Signature before 0.75 allows local users to gain privileges via a Trojan horse module under the current working directory, as demonstrated by a Trojan horse Text::Diff module.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.001
EPSS Ranking
32.8%
CVSS Severity
CVSS v2 Score
7.2
References
http://ubuntu.com/usn/usn-2607-1
http://www.debian.org/security/2015/dsa-3261
http://www.openwall.com/lists/oss-security/2015/04/07/1
http://www.openwall.com/lists/oss-security/2015/04/23/17
http://www.securityfocus.com/bid/73937
https://github.com/audreyt/module-signature/commit/c41e8885b862b9fce2719449bc9336f0bea658ef
https://metacpan.org/changes/distribution/Module-Signature
http://ubuntu.com/usn/usn-2607-1
http://www.debian.org/security/2015/dsa-3261
http://www.openwall.com/lists/oss-security/2015/04/07/1
http://www.openwall.com/lists/oss-security/2015/04/23/17
http://www.securityfocus.com/bid/73937
https://github.com/audreyt/module-signature/commit/c41e8885b862b9fce2719449bc9336f0bea658ef
https://metacpan.org/changes/distribution/Module-Signature
Products affected by CVE-2015-3409
Module-Signature Project
»
Module-Signature
»
Version:
0.73
cpe:2.3:a:module-signature_project:module-signature:0.73
Module-Signature Project
»
Module-Signature
»
Version:
0.74
cpe:2.3:a:module-signature_project:module-signature:0.74
Canonical
»
Ubuntu Linux
»
Version:
12.04
cpe:2.3:o:canonical:ubuntu_linux:12.04
Canonical
»
Ubuntu Linux
»
Version:
14.04
cpe:2.3:o:canonical:ubuntu_linux:14.04
Canonical
»
Ubuntu Linux
»
Version:
14.10
cpe:2.3:o:canonical:ubuntu_linux:14.10
Canonical
»
Ubuntu Linux
»
Version:
15.04
cpe:2.3:o:canonical:ubuntu_linux:15.04
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved