CVE-2023-37154

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
09/10/2024
Last modified:
10/10/2024

Description

check_by_ssh in Nagios nagios-plugins 2.4.5 allows arbitrary command execution via ProxyCommand, LocalCommand, and PermitLocalCommand with \${IFS}. This has been categorized both as fixed in e8810de, and as intended behavior.