Known Vulnerabilities for products from Munin-monitoring

Listed below are 9 of the newest known vulnerabilities associated with the vendor "Munin-monitoring".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2017-6188 json Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET param... 5.5 - MEDIUM 2017-02-22 2020-05-27
CVE-2013-6359 json Munin::Master::Node in Munin before 2.0.18 allows remote attackers to cause a denial of service (abort data collection for no... Not Provided 2013-12-13 2026-04-29
CVE-2013-6048 json The get_group_tree function in lib/Munin/Master/HTMLConfig.pm in Munin before 2.0.18 allows remote nodes to cause a denial of... Not Provided 2013-12-13 2026-04-29
CVE-2012-4678 json munin-cgi-graph for Munin 2.0 rc4 does not delete temporary files, which allows remote attackers to cause a denial of service... Not Provided 2012-08-26 2026-04-29
CVE-2012-3513 json munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configu... Not Provided 2012-11-21 2026-04-29
CVE-2012-3512 json Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, which... Not Provided 2012-11-21 2026-04-29
CVE-2012-2147 json munin-cgi-graph in Munin 2.0 rc4 allows remote attackers to cause a denial of service (disk or memory consumption) via many i... Not Provided 2012-08-26 2026-04-29
CVE-2012-2104 json cgi-bin/munin-cgi-graph in Munin 2.x writes data to a log file without sanitizing non-printable characters, which might allow... Not Provided 2012-08-26 2026-04-29
CVE-2012-2103 json The qmailscan plugin for Munin 1.4.5 allows local users to overwrite arbitrary files via a symlink attack on temporary files ... Not Provided 2012-08-26 2026-04-29

Known software with vulnerabilities from Munin-monitoring

Type Vendor Product Version
ApplicationMunin-monitoringMunin2.0.0