Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vg5c-jm85-v84v

Опубликовано: 05 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.

The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.

EPSS

Процентиль: 69%
0.00612
Низкий

7.2 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.2
ubuntu
около 1 года назад

The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.

CVSS3: 7.2
nvd
около 1 года назад

The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.

CVSS3: 7.2
debian
около 1 года назад

The "NagVis" component within Checkmk is vulnerable to remote code exe ...

EPSS

Процентиль: 69%
0.00612
Низкий

7.2 High

CVSS3

Дефекты

CWE-434