Vulnerabilities > CVE-2012-4678 - Resource Management Errors vulnerability in Munin-Monitoring Munin 2.0Rc4

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
munin-monitoring
CWE-399

Summary

munin-cgi-graph for Munin 2.0 rc4 does not delete temporary files, which allows remote attackers to cause a denial of service (disk consumption) via many requests to an image with unique parameters.

Vulnerable Configurations

Part Description Count
Application
Munin-Monitoring
1

Common Weakness Enumeration (CWE)