Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Authenticated users, with access to the configuration, can create SSH resource files in unintended directories, leading to the execution of arbitrary code. This issue has been resolved in versions 2.8.6, 2.9.6 and 2.10 of Icinga Web 2. Users unable to upgrade should limit access to the Icinga Web 2 configuration.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2022-03-08T00:00:00
Updated: 2024-08-03T04:20:50.162Z
Reserved: 2022-02-10T00:00:00
Link: CVE-2022-24715
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-03-08T20:15:07.777
Modified: 2024-11-21T06:50:56.267
Link: CVE-2022-24715
Redhat
No data.