Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7r6c-w44p-vhc8

Опубликовано: 30 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In Nagios XI through 5.8.5, a read-only Nagios user (due to an incorrect permission check) is able to schedule downtime for any host/services. This allows an attacker to permanently disable all monitoring checks.

In Nagios XI through 5.8.5, a read-only Nagios user (due to an incorrect permission check) is able to schedule downtime for any host/services. This allows an attacker to permanently disable all monitoring checks.

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 6.5
nvd
больше 3 лет назад

In Nagios XI through 5.8.5, a read-only Nagios user (due to an incorrect permission check) is able to schedule downtime for any host/services. This allows an attacker to permanently disable all monitoring checks.

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-732