CVE-2012-3513
EPSS 0.79%
Description
munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command.
How to fix CVE-2012-3513
To remediate CVE-2012-3513, upgrade the affected package to a fixed version below.
- Debian/munin—upgrade to 2.0.6-1 or later
Is CVE-2012-3513 being exploited?
Low — EPSS is 0.8%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2.0.6-1