dbyio/cve-2022-37298

dbyio/cve-2022-37298

Releases0
Stars3
CVE-2022-37298 Shinken Monitoring

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler class found in shinken/safepickle.py implements a weak authentication scheme when unserializing objects passed from monitoring nodes to the Shinken monitoring server.