vulnerability

Amazon Linux AMI: CVE-2017-6188: Security patch for munin (ALAS-2017-818)

Severity
2
CVSS
(AV:L/AC:M/Au:N/C:N/I:P/A:N)
Published
2017-02-22
Added
2017-04-20
Modified
2022-10-14

Description

Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET parameters allows overwriting any file accessible to the www-data user.

Solution

amazon-linux-upgrade-munin
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.