Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-4703

Опубликовано: 05 дек. 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain sensitive information via a symlink attack on the configuration file in the extra-opts flag. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4701.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nagios:nagios:2.0.2:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00443
Низкий

2.1 Low

CVSS2

Дефекты

CWE-59

Связанные уязвимости

ubuntu
около 11 лет назад

lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain sensitive information via a symlink attack on the configuration file in the extra-opts flag. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4701.

redhat
больше 11 лет назад

lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain sensitive information via a symlink attack on the configuration file in the extra-opts flag. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4701.

debian
около 11 лет назад

lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain s ...

github
больше 3 лет назад

lib/parse_ini.c in Nagios Plugins 2.0.2 allows local users to obtain sensitive information via a symlink attack on the configuration file in the extra-opts flag. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4701.

EPSS

Процентиль: 63%
0.00443
Низкий

2.1 Low

CVSS2

Дефекты

CWE-59