Description
Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.
Remediation
References
Related Vulnerabilities
SharePoint CVE-2019-1034 Vulnerability (CVE-2019-1034)
MediaWiki Session Fixation Vulnerability (CVE-2013-4572)
XWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-41927)
WordPress Plugin Daily Inspiration Generator Open Redirect (2.0)
Payara URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2024-7312)