60
CVE-2020-28906
—CVSS 3.1
8.8 high
EPSS
5%p91
Published
()
Modified
Description
Incorrect File Permissions in Nagios XI 5.7.5 and earlier and Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root. Low-privileged users are able to modify files that are included (aka sourced) by scripts executed by root.
- Vendors
- nagios
- Products
- fusion, nagios xi
- Weakness
- CWE-276
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H