CVE-2017-16834

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
7.2
HIGH
Affected
1
PROJECT

Description

PNP4Nagios through 0.6.26 has /usr/bin/npcd and npcd.cfg owned by an unprivileged account but root code execution depends on these files, which allows local users to gain privileges by leveraging access to this unprivileged account.

PNP is an addon to Nagios which analyzes performance data provided by plugins and stores them automatically into RRD-databases.
GitHubGitHub
153