CVE-2020-15861 PUBLISHED

Net-SNMP through 5.7.3 allows Escalation of Privileges because of UNIX symbolic link (symlink) following.

EPSS 0.43% · 62.5th percentile

Risk Scores

EPSS Score
0.43%
62.5th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSnet-snmp5.8+dfsg-2ubuntu2.1, 5.8+dfsg-2ubuntu2, 5.8+dfsg-2ubuntu1
Ubuntu:Pro:14.04:LTSnet-snmp5.7.2~dfsg-8.1ubuntu3.1, 5.7.2~dfsg-8.1ubuntu3.2, 5.7.2~dfsg-8.1ubuntu3.3
Ubuntu:18.04:LTSnet-snmp5.7.3+dfsg-1.8ubuntu3.3, 0, 5.7.3+dfsg-1.7ubuntu1
Ubuntu:16.04:LTSnet-snmp5.7.3+dfsg-1ubuntu2, 5.7.3+dfsg-1ubuntu4.4, 5.7.3+dfsg-1ubuntu4.3

Timeline

References

Open in Interactive Console →