Back

CVE-2005-4261

Unspecified vulnerability in Positive Software Corporation CP+ (cpplus) before 2.5.5 allows attackers to have unknown impact and attack vectors, related to "a possible security flaw caused by a bug in Perl." NOTE: unless CP+ includes its own copy of Perl with CVE-2005-3962, this is a different vulnerability than CVE-2005-3962; however, there is insufficient information to be sure.

Published: Dec 15, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (6)

Vendor Product Version
positive_software cp\+ 2.5
positive_software cp\+ 2.5.1
positive_software cp\+ 2.5.2
positive_software cp\+ 2.5.3
positive_software cp\+ 2.5.4
positive_software cp\+ 2.5.5

GitHub Security Advisory GHSA-rc8p-8p78-4qgh

Unspecified vulnerability in Positive Software Corporation CP+ (cpplus) before 2.5.5 allows...

Risk Scores

CVSS Score 7.8 / 10
EPSS Score 1.69%

Top 25% most likely to be exploited

Threat Score 31.7 / 100

Data Sources

NVD EPSS GitHub