Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34599
HistoryMar 11, 2022 - 2:35 a.m.

Remote Code Execution (RCE)

2022-03-1102:35:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
39
icinga
web 2
remote code execution
vulnerability
ssh
resource files

EPSS

0.004

Percentile

74.2%

Icinga Web 2 is vulnerable to remote code execution. The vulnerability exists due to the lack of validation of access to the configuration which can create SSH resource files in unintended directories.