An issue was discovered in OpServices OpMon 9.3.2. Starting from the apache user account, it is possible to perform privilege escalation through the lack of correct configuration in the server's sudoers file, which by default allows the execution of programs (e.g. nmap) without the need for a password with sudo.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-02-06T16:31:49
Updated: 2024-08-04T09:48:24.954Z
Reserved: 2020-01-24T00:00:00
Link: CVE-2020-7954
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-02-06T17:15:14.600
Modified: 2023-11-07T03:26:13.997
Link: CVE-2020-7954
Redhat
No data.