perl2exe <= V30.10C contains an arbitrary code execution vulnerability that allows local authenticated attackers to execute malicious scripts. Attackers can control the 0th argument of packed executables to execute another executable, allowing them to bypass restrictions and gain unauthorized access.
History

Fri, 05 Dec 2025 11:00:00 +0000

Type Values Removed Values Added
First Time appeared Indigostar
Indigostar perl2exe
Vendors & Products Indigostar
Indigostar perl2exe

Thu, 04 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
Description perl2exe <= V30.10C contains an arbitrary code execution vulnerability that allows local authenticated attackers to execute malicious scripts. Attackers can control the 0th argument of packed executables to execute another executable, allowing them to bypass restrictions and gain unauthorized access.
Title IndigoSTAR Software - perl2exe <= V30.10C - Arbitrary Code Execution
Weaknesses CWE-78
References
Metrics cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2025-12-04T20:42:56.275Z

Reserved: 2025-12-04T16:32:25.980Z

Link: CVE-2024-58278

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-12-04T21:16:07.867

Modified: 2025-12-04T21:16:07.867

Link: CVE-2024-58278

cve-icon Redhat

No data.