Severity: High
ID: 39601
File Name: ubuntu_USN-795-1.nasl
Version: 1.21
Type: local
Agent: unix
Family: Ubuntu Local Security Checks
Published: 7/3/2009
Updated: 1/19/2021
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus
Risk Factor: High
Score: 7.4
Risk Factor: High
Base Score: 7.5
Temporal Score: 6.2
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CPE: p-cpe:/a:canonical:ubuntu_linux:nagios2, p-cpe:/a:canonical:ubuntu_linux:nagios2-common, p-cpe:/a:canonical:ubuntu_linux:nagios2-dbg, p-cpe:/a:canonical:ubuntu_linux:nagios2-doc, p-cpe:/a:canonical:ubuntu_linux:nagios3, p-cpe:/a:canonical:ubuntu_linux:nagios3-common, p-cpe:/a:canonical:ubuntu_linux:nagios3-dbg, p-cpe:/a:canonical:ubuntu_linux:nagios3-doc, cpe:/o:canonical:ubuntu_linux:8.04:-:lts, cpe:/o:canonical:ubuntu_linux:8.10, cpe:/o:canonical:ubuntu_linux:9.04
Required KB Items: Host/cpu, Host/Debian/dpkg-l, Host/Ubuntu, Host/Ubuntu/release
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 7/2/2009
Vulnerability Publication Date: 7/1/2009
CANVAS (CANVAS)
Core Impact
Metasploit (Nagios3 statuswml.cgi Ping Command Execution)
Elliot (Nagios 3.1.0 RCE)
CVE: CVE-2009-2288
BID: 35464