CVE-2013-3500
08.05.2013, 12:09
The Foundation webapp admin interface in GroundWork Monitor Enterprise 6.7.0 uses the nagios account as the owner of writable files under /usr/local/groundwork, which allows context-dependent attackers to bypass intended filesystem restrictions by leveraging access to a GroundWork script.Enginsight
Vendor | Product | Version |
---|---|---|
gwos | groundwork_monitor | 6.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References