Check_MK through 1.2.5i2p1 allows local users to read arbitrary files via a symlink attack to a file in /var/lib/check_mk_agent/job.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-07-19 10:29
Updated : 2018-09-17 11:04
NVD link : CVE-2014-0243
Mitre link : CVE-2014-0243
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
check_mk_project
- check_mk