A command-execution vulnerability tracked as CVE-2012-6329 was disclosed in Perl's Locale::Maketext implementation, specifically in the _compile function of Maketext.pm. The flaw affects Perl versions before 5.17.7, where bracket-notation compilation fails to safely handle backslashes and fully qualified method names, allowing crafted translation-string input to trigger unintended command execution in vulnerable applications.
The issue was highlighted as affecting wiki platforms that relied on the vulnerable Perl component, including TWiki before 5.1.3 and Foswiki versions 1.0.x through 1.0.10 and 1.1.x through 1.1.6. The vulnerability is relevant where applications accept user-supplied translation strings, creating a path for attackers to exploit localization features to run commands on the underlying system.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
The CVE entry for CVE-2012-6329 was later updated. The record notes an update date of 2016-12-06.
MITRE published CVE-2012-6329 for a command-execution vulnerability in Perl's Locale::Maketext implementation that could be exploited through crafted translation-string input. The record cites TWiki before 5.1.3 and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6 as affected examples.
A command-execution vulnerability in the _compile function of Maketext.pm affected Perl versions before 5.17.7. The CVE record references Perl commit 1735f6f53ca19f99c6e9e39496c486af323ba6a8 as related to the fix.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.