High severity7.8NVD Advisory· Published May 23, 2017· Updated May 13, 2026
CVE-2017-0374
CVE-2017-0374
Description
lib/Config/Model.pm in Config-Model (aka libconfig-model-perl) before 2.102 allows local users to gain privileges via a crafted model in the current working directory, related to use of . with the INC array.
Affected products
1- cpe:2.3:a:config-model_project:config-model:*:*:*:*:*:*:*:*Range: <=2.101
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.