Lucene search

K
osvGoogleOSV:CVE-2017-16933
HistoryNov 24, 2017 - 5:29 a.m.

CVE-2017-16933

2017-11-2405:29:00
Google
osv.dev
8

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%

etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown call for a filename in a user-writable directory, which allows local users to gain privileges by leveraging access to the $ICINGA2_USER account for creation of a link.

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%