CVE-2020-6581 in Nagios and Fedora Project Products
Published on March 16, 2020
Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \n newline sequence). This can cause command injection.
Products Associated with CVE-2020-6581
stack.watch emails you whenever new vulnerabilities are published in Nagios Remote Plug In Executor or Fedora Project Fedora. Just hit a watch button to start following.
Exploit Probability
EPSS
0.25%
Percentile
47.44%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.