base/logging.c in Nagios Core before 4.2.4 allows local users with access to an account in the nagios group to gain root privileges via a symlink attack on the log file. NOTE: this can be leveraged by remote attackers using CVE-2016-9565.
References
Configurations
Information
Published : 2016-12-15 14:59
Updated : 2018-12-25 03:29
NVD link : CVE-2016-9566
Mitre link : CVE-2016-9566
JSON object : View
CWE
Products Affected
nagios
- nagios