The Net::IPAddress::Util module before 5.000 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.
Metrics
Affected Vendors & Products
References
History
Thu, 27 Mar 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-1287 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T19:33:18.337Z
Reserved: 2024-03-18T00:00:00.000Z
Link: CVE-2021-47156

Updated: 2024-08-04T05:24:39.900Z

Status : Undergoing Analysis
Published: 2024-03-18T05:15:06.260
Modified: 2025-03-27T20:15:16.147
Link: CVE-2021-47156

No data.