ZeroHour

CVE-2020-28906

CVSS 3.1
8.8 high
EPSS
5%p91
Published
()
Modified
Description

Incorrect File Permissions in Nagios XI 5.7.5 and earlier and Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root. Low-privileged users are able to modify files that are included (aka sourced) by scripts executed by root.

Vendors
nagios
Products
fusion, nagios xi
Weakness
CWE-276
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news