18 Nov 2017
CVE-2017-16882 - CVE Vulnerability
Icinga Core through 1.14.0 initially executes bin/icinga as root but supports configuration options in which this file is owned by a non-root account (and similarly can have etc/icinga.cfg owned by a non-root account), which allows local users to gain privileges by leveraging access to this non-root account, a related issue to CVE-2017-14312. This also affects bin/icingastats, bin/ido2db, and bin/log2ido. (CVSS:0.0) (Last Update:2017-11-18)
Vulnerability Details : Icinga Core through 1.14.0 initially executes bin/icinga as root but supports configuration options in which this file is owned by a non-root account (and similarly can have etc/icinga.cfg owned by a non-root account), which allows local users to gain privileges by leveraging access to this non-root account, a related issue to CVE-2017-14312. This also affects bin/icingastats, bin/ido2db, and bin/log2ido. Publish Date : 2017-11-18 Last Update Date : 2017-11-18 - CVSS Scores & Vulnerability Types
- Products Affected By CVE-2017-16882
- References For CVE-2017-16882
| ||||||||||||||||||||||||||||||||||||||||||||||
- Metasploit Modules Related To CVE-2017-16882There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information) |