Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows local users to overwrite arbitrary files via a symlink attack on a temporary nagioscfg file with a predictable name in /tmp/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Nagios 后置链接漏洞
Vulnerability Description
Nagios是美国Nagios公司的一套开源的免费网络监视工具。 Nagios Core 3.4.4和3.5.1及之前版本存在后置链接漏洞。本地攻击者利用该漏洞执行符号链接攻击,在受影响程序环境中覆盖任意文件。
CVSS Information
N/A
Vulnerability Type
N/A