ZeroHour

CVE-2017-16834

CVSS 3.0
7.8 high
EPSS
<1%p29
Published
()
Modified
Description

PNP4Nagios through 0.6.26 has /usr/bin/npcd and npcd.cfg owned by an unprivileged account but root code execution depends on these files, which allows local users to gain privileges by leveraging access to this unprivileged account.

Vendors
pnp4nagios
Products
pnp4nagios
Weakness
CWE-732
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.