Логотип exploitDog
bind:CVE-2018-16146
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-16146

Количество 2

Количество 2

nvd логотип

CVE-2018-16146

больше 7 лет назад

The web management console of Opsview Monitor 5.4.x before 5.4.2 provides functionality accessible by an authenticated administrator to test notifications that are triggered under certain configurable events. The value parameter is not properly sanitized, leading to arbitrary command injection with the privileges of the nagios user account.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-fh92-wm8w-xpmm

больше 3 лет назад

The web management console of Opsview Monitor 5.4.x before 5.4.2 provides functionality accessible by an authenticated administrator to test notifications that are triggered under certain configurable events. The value parameter is not properly sanitized, leading to arbitrary command injection with the privileges of the nagios user account.

CVSS3: 7.2
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-16146

The web management console of Opsview Monitor 5.4.x before 5.4.2 provides functionality accessible by an authenticated administrator to test notifications that are triggered under certain configurable events. The value parameter is not properly sanitized, leading to arbitrary command injection with the privileges of the nagios user account.

CVSS3: 7.2
11%
Средний
больше 7 лет назад
github логотип
GHSA-fh92-wm8w-xpmm

The web management console of Opsview Monitor 5.4.x before 5.4.2 provides functionality accessible by an authenticated administrator to test notifications that are triggered under certain configurable events. The value parameter is not properly sanitized, leading to arbitrary command injection with the privileges of the nagios user account.

CVSS3: 7.2
11%
Средний
больше 3 лет назад

Уязвимостей на страницу