Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-12847
HistoryAug 23, 2017 - 9:29 p.m.

Command injection

2017-08-2321:29:00
PRIOn knowledge base
www.prio-n.com
2

6.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.6%

Nagios Core before 4.3.3 creates a nagios.lock PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for nagios.lock modification before a root script executes a “kill cat /pathname/nagios.lock” command.

CPENameOperatorVersion
nagiosle4.3.2

6.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.6%