CVE-2006-5872

Source
https://cve.org/CVERecord?id=CVE-2006-5872
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2006-5872.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2006-5872
Downstream
Withdrawn
2026-01-27T04:07:32.481668Z
Published
2006-12-18T00:28:00Z
Modified
2026-01-27T04:07:32.481668Z
Summary
[none]
Details

login.pl in SQL-Ledger before 2.6.21 and LedgerSMB before 1.1.5 allows remote attackers to execute arbitrary Perl code via the "-e" flag in the script parameter, which is used as an argument to the perl program.

References

Affected packages