Security Advisory

CVE-2017-6188

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-02-22 19:00:00
Last updated 2024-08-05 15:25:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET parameters allows overwriting any file accessible to the www-data user.