Vulnerabilities > Nagios > Nagios Core > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-09-11 | CVE-2017-14312 | Improper Privilege Management vulnerability in Nagios Core Nagios Core through 4.3.4 initially executes /usr/sbin/nagios as root but supports configuration options in which this file is owned by a non-root account (and similarly can have nagios.cfg owned by a non-root account), which allows local users to gain privileges by leveraging access to this non-root account. | 7.2 |