Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rwp9-w3rx-vf92

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

EPSS

Процентиль: 39%
0.00168
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 5.5
nvd
больше 25 лет назад

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

EPSS

Процентиль: 39%
0.00168
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-59