CVE-1999-1386
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Dec 31, 1999
Updated: Nov 20, 2024
CWE ID 59
Summary
CVE-1999-1386 is a vulnerability affecting Perl 5.004_04 and earlier versions. This issue allows local users to manipulate symbolic links when Perl is run with the -e option. By creating a malicious link to the /tmp/perl-eaXXXXX file, attackers can cause Perl to overwrite arbitrary files, potentially leading to significant data loss or system compromise. This vulnerability highlights the importance of keeping software up-to-date to protect against known security risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Perl
Affected Vendors
- Perl