CVE-2021-27216
Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary files as root. This involves the -oP and -oPX options.
- Exim
- < 4.94.2
- Fix
- Available
- CVSS 3.1
- 6.3 MEDIUM
- EPSS
- 1.0% (59th percentile)
- Weakness
- CWE-362
- NVD status
- Modified
- Published
- 2021-05-06
CVE-2021-27216 at NVD
3 known exploits for CVE-2021-27216
Proof-of-concept code and exploit modules indexed by Sploitus