CVE-2025-27591

MEDIUM

Facebook Below < 0.9.0 - Incorrect Permission Assignment

Title source: rule

Description

A privilege escalation vulnerability existed in the Below service prior to v0.9.0 due to the creation of a world-writable directory at /var/log/below. This could have allowed local unprivileged users to escalate to root privileges through symlink attacks that manipulate files such as /etc/shadow.

Exploits (21)

nomisec WORKING POC 31 stars
by BridgerAlderson · poc
https://github.com/BridgerAlderson/CVE-2025-27591-PoC
nomisec WORKING POC 16 stars
by 0x00Jeff · poc
https://github.com/0x00Jeff/CVE-2025-27591
nomisec WORKING POC 13 stars
by obamalaolu · poc
https://github.com/obamalaolu/CVE-2025-27591
nomisec WORKING POC 8 stars
by dollarboysushil · poc
https://github.com/dollarboysushil/Linux-Privilege-Escalation-CVE-2025-27591
nomisec WORKING POC 3 stars
by rvizx · poc
https://github.com/rvizx/CVE-2025-27591
nomisec WORKING POC 3 stars
by Cythonic1 · poc
https://github.com/Cythonic1/CVE-2025-27591
github WORKING POC 2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-27591
nomisec WORKING POC 2 stars
by VisaiCyber · poc
https://github.com/VisaiCyber/CVE-2025-27591-below-
github WORKING POC 2 stars
by Diabl0xE · shellpoc
https://github.com/Diabl0xE/CVE-2025-27519
nomisec WORKING POC 2 stars
by 00xCanelo · poc
https://github.com/00xCanelo/CVE-2025-27591
nomisec WORKING POC 2 stars
by incommatose · poc
https://github.com/incommatose/CVE-2025-27591-PoC
nomisec WORKING POC 1 stars
by nikolas-trey · poc
https://github.com/nikolas-trey/CVE-2025-27591
nomisec WORKING POC 1 stars
by 0xDTC · poc
https://github.com/0xDTC/Below-Logger-Symlink-Attack_CVE-2025-27591
nomisec WORKING POC 1 stars
by danil-koltsov · poc
https://github.com/danil-koltsov/below-log-race-poc
nomisec WORKING POC 1 stars
by umutatalar · poc
https://github.com/umutatalar/CVE-2025-27591
nomisec WORKING POC 1 stars
by umutcamliyurt · poc
https://github.com/umutcamliyurt/CVE-2025-27591
nomisec WORKING POC
by rippsec · poc
https://github.com/rippsec/CVE-2025-27591-Meta-below-LPE
nomisec WORKING POC
by Stp1t · poc
https://github.com/Stp1t/CVE-2025-27591
nomisec WORKING POC
by Thekin-ctrl · poc
https://github.com/Thekin-ctrl/CVE-2025-27591-Below
nomisec WORKING POC
by alialucas7 · poc
https://github.com/alialucas7/CVE-2025-27591_PoC
nomisec WORKING POC
by DarksBlackSk · poc
https://github.com/DarksBlackSk/CVE-2025-27591

Scores

CVSS v3 6.8
EPSS 0.0014
EPSS Percentile 33.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N

Details

CWE
CWE-732
Status published
Products (2)
crates.io/below 0 - 0.9.0crates.io
facebook/below < 0.9.0
Published Mar 11, 2025
Tracked Since Feb 18, 2026