Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

LibreNMS Authenticated RCE (< 26.5.0)

Summary

The second LibreNMS post: an unsanitised exec call in the Libvirt discovery module allows authenticated RCE, plus alternative paths via writable binaries and composer wrapper argument injection.
Published
Collected

original ↗

Related coverage

back