CVE-2008-2827
The rmtree function in lib/File/Path.pm in Perl 5.10 does not properly check permissions before performing a chmod, which allows local users to modify the permissions of arbitrary files via a symlink attack, a different vulnerability than CVE-2005-0448 and CVE-2004-0452.
- Affected products
- Perl
- Perl
- = 5.10
- Fix
- Available
- CVSS 2.0
- 4.6 MEDIUM
- EPSS
- 0.8% (55th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2008-06-23
CVE-2008-2827 at NVD
2 known exploits for CVE-2008-2827
Proof-of-concept code and exploit modules indexed by Sploitus