CVE-2022-26563

An issue was discovered in Tildeslash Monit before 5.31.0, allows remote attackers to gain escilated privlidges due to improper PAM-authorization.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tildeslash:monit:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:54

Type Values Removed Values Added
References () https://bitbucket.org/tildeslash/monit/commits/6ecaab1d375f33165fe98d06d92f36c949c0ea11 - Patch () https://bitbucket.org/tildeslash/monit/commits/6ecaab1d375f33165fe98d06d92f36c949c0ea11 - Patch
References () https://man7.org/linux/man-pages/man3/pam_acct_mgmt.3.html - Third Party Advisory () https://man7.org/linux/man-pages/man3/pam_acct_mgmt.3.html - Third Party Advisory

27 Jul 2023, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Tildeslash
Tildeslash monit
CWE CWE-863
CPE cpe:2.3:a:tildeslash:monit:*:*:*:*:*:*:*:*
References (MISC) https://bitbucket.org/tildeslash/monit/commits/6ecaab1d375f33165fe98d06d92f36c949c0ea11 - (MISC) https://bitbucket.org/tildeslash/monit/commits/6ecaab1d375f33165fe98d06d92f36c949c0ea11 - Patch
References (MISC) https://man7.org/linux/man-pages/man3/pam_acct_mgmt.3.html - (MISC) https://man7.org/linux/man-pages/man3/pam_acct_mgmt.3.html - Third Party Advisory

18 Jul 2023, 14:47

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-18 14:15

Updated : 2024-11-21 06:54


NVD link : CVE-2022-26563

Mitre link : CVE-2022-26563

CVE.ORG link : CVE-2022-26563


JSON object : View

Products Affected

tildeslash

  • monit
CWE
CWE-863

Incorrect Authorization