CVE-2007-2996 describes an unspecified privilege escalation vulnerability in perl.rte versions 5.8.0.10 through 5.8.0.95 on IBM AIX 5.2, and 5.8.2.10 through 5.8.2.50 on AIX 5.3. This vulnerability allows authenticated local users to gain elevated privileges by exploiting an unspecified mechanism related to Perl installation and waiting for a legitimate user to execute a Perl-shipped binary. With a CVSS score of 6.6, it presents a significant risk due to high confidentiality, integrity, and availability impacts, though it requires local access and medium attack complexity. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.2CPE matchmatch criteria | cpe:2.3:o:ibm:aix:5.2:*:*:*:*:*:*:* | ||
5.3CPE matchmatch criteria | cpe:2.3:o:ibm:aix:5.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:S/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.