CVE-2000-0703
suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report
suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" environmental variable and calling suidperl with a filename that contains the escape sequence.
HIGH · CVSS 7.2
EPSS 0.00247
Act now
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules2
YARA rules0