---
id: CVE-2024-58278
title: >-
  perl2exe <= V30.10C contains an arbitrary code execution vulnerability that
  allows local authenticated attackers to execute malicious scripts
summary: >-
  perl2exe <= V30.10C contains an arbitrary code execution vulnerability that
  allows local authenticated attackers to execute malicious scripts. Attackers
  can control the 0th argument of packed executables to execute another
  executable, al…
severity: none
cwe:
  - CWE-78
published: '2025-12-04'
updated: '2026-09-26'
sourceUpdated: '2026-09-26T21:10:00.130'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-58278'
references:
  - url: 'https://www.exploit-db.com/exploits/51825'
    label: disclosure@vulncheck.com
  - url: 'https://www.indigostar.com/'
    label: disclosure@vulncheck.com
  - url: 'https://www.indigostar.com/download/p2x-30.10-Linux-x64-5.30.1.tar.gz'
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/indigostar-software-perl2exe-v3010c-arbitrary-code-execution
    label: disclosure@vulncheck.com
tags:
  - nvd
epss: 0.00188
epssPercentile: 0.07531
ingestedAt: '2026-09-26T21:38:01.497Z'
---

## Overview

perl2exe <= V30.10C contains an arbitrary code execution vulnerability that allows local authenticated attackers to execute malicious scripts. Attackers can control the 0th argument of packed executables to execute another executable, allowing them to bypass restrictions and gain unauthorized access.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
