MagpieRSS, as used in the front-end component in Nagios Core before 4.2.2 might allow remote attackers to read or write to arbitrary files by spoofing a crafted response from the Nagios RSS feed server. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4796.
References
Configurations
Information
Published : 2016-12-15 14:59
Updated : 2018-10-09 13:00
NVD link : CVE-2016-9565
Mitre link : CVE-2016-9565
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
nagios
- nagios