9.3

CVE-2012-3513

Exploit
munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Munin-monitoringMunin Version <= 2.0.5
Munin-monitoringMunin Version2.0-beta1
Munin-monitoringMunin Version2.0-beta2
Munin-monitoringMunin Version2.0-beta3
Munin-monitoringMunin Version2.0-beta4
Munin-monitoringMunin Version2.0-beta5
Munin-monitoringMunin Version2.0-beta6
Munin-monitoringMunin Version2.0-beta7
Munin-monitoringMunin Version2.0-rc1
Munin-monitoringMunin Version2.0-rc2
Munin-monitoringMunin Version2.0-rc3
Munin-monitoringMunin Version2.0-rc4
Munin-monitoringMunin Version2.0-rc5
Munin-monitoringMunin Version2.0-rc6
Munin-monitoringMunin Version2.0-rc7
Munin-monitoringMunin Version2.0.0
Munin-monitoringMunin Version2.0.1
Munin-monitoringMunin Version2.0.2
Munin-monitoringMunin Version2.0.3
Munin-monitoringMunin Version2.0.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.79% 0.716
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.