Net::CIDR::Set是RRWO个人开发者的一个Perl网络地址管理库。 Net::CIDR::Set 0.20及之前版本存在安全漏洞,该漏洞源于未验证网络掩码,网络掩码的掩码部分可能包含Unicode数字如阿拉伯-印度一或非数字字符并被忽略,可能导致网络掩码接受更大的网络,且前导零被接受但视为十进制而非八进制,可能导致网络接受混淆。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| RRWO | Net::CIDR::Set | ≤ 0.20 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| RRWO | Net::CIDR::Set | 0 ~ 0.20 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-49940 | Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses and netmasks | |
| CVE-2026-49941 | Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses |
No comments yet