CVE-2016-9565
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 23%
from disclosure to weapon0 days
Published on NVDDec 15
1st PoCDec 15
exploitation probability
23%top 3% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
MagpieRSS, as used in the front-end component in Nagios Core before 4.2.2 might allow remote attackers to read or write to arbitrary files by spoofing a crafted response from the Nagios RSS feed server. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4796.
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/140169/Nagios-Core-Curl-Command-Injection-Code-Execution.htmlunverifiedcve_referencewww.exploit-db.com/exploits/40920/unverifiedexploitdbwww.exploit-db.com/exploits/40920unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://packetstormsecurity.com/files/140169/Nagios-Core-Curl-Command-Injection-Code-Execution.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0211.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0212.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0213.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0214.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0258.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0259.htmlhttp://seclists.org/fulldisclosure/2016/Dec/57https://legalhackers.com/advisories/Nagios-Exploit-Command-Injection-CVE-2016-9565-2008-4796.htmlhttps://security.gentoo.org/glsa/201702-26https://security.gentoo.org/glsa/201710-20https://www.exploit-db.com/exploits/40920/