CVE-2014-8994
28.11.2014, 15:59
The check_diskio plugin 3.2.6 and earlier for Nagios and Icinga allows local users to write to arbitrary files via a symlink attack on a temporary file with a predictable name (tmp/check_diskio_status-*-*).Enginsight
Vendor | Product | Version |
---|---|---|
check_diskio_project | check_diskio | 𝑥 ≤ 3.2.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References