CVE-2020-28169

Published
View on NVD ↗
CVSS v3
7
HIGH
CVSS v2
6.9
MEDIUM
Affected
2
PROJECTS

Description

The td-agent-builder plugin before 2020-12-18 for Fluentd allows attackers to gain privileges because the bin directory is writable by a user account, but a file in bin is executed as NT AUTHORITY\SYSTEM.

Fluentd: Unified Logging Layer (project under CNCF)
GitHubGitHub
13.5K
td-agent (Fluentd) Building and Packaging System
GitHubGitHub
25