|
|
Log in / Subscribe / Register

monit: cross-site request forgery

Package(s):monit CVE #(s):CVE-2016-7067
Created:November 14, 2016 Updated:December 13, 2016
Description: From the Mageia advisory:

The forms in Monit's Service Manager are vulnerable to a cross site request forgery attack. Successful exploitation will enable an attacker to disable/enable all monitoring for a particular host, disable/enable monitoring for a specific service.

Alerts:
Mageia MGASA-2016-0375 monit 2016-11-14
Debian-LTS DLA-732-3 monit 2016-12-12
Debian-LTS DLA-732-2 monit 2016-12-06
Debian-LTS DLA-732-1 monit 2016-12-02
openSUSE openSUSE-SU-2016:2877-1 monit 2016-11-22

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds