10
CVSSv2

CVE-2018-16144

Published: 05/09/2018 Updated: 03/10/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The test connection functionality in the NetAudit section of Opsview Monitor prior to 5.3.1 and 5.4.x prior to 5.4.2 is vulnerable to command injection due to improper sanitization of the rancid_password parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opsview opsview

Exploits

Opsview Monitor versions 52, 53, and 54 suffer from cross site scripting and multiple remote command execution vulnerabilities ...