CVE-2018-14055 log
Source |
|
Severity | High |
Remote | Yes |
Type | Privilege escalation |
Description | ZNC before 1.7.1-rc1 does not properly validate untrusted lines coming from the network, allowing a non-admin user to escalate privilege, inject rogue values into znc.conf, and gain shell access. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-737 | znc | 1.7.0-2 | 1.7.1-1 | High | Fixed |
Date | Advisory | Group | Package | Severity | Type |
---|---|---|---|---|---|
19 Jul 2018 | ASA-201807-11 | AVG-737 | znc | High | multiple issues |