CVE-2015-8100Sensitive Information Exposure in Net-snmp

Severity
2.1LOWNVD
EPSS
0.1%
top 66.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 10
Latest updateMay 17

Description

The net-snmp package in OpenBSD through 5.8 uses 0644 permissions for snmpd.conf, which allows local users to obtain sensitive community information by reading this file.

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages5 packages

🔴Vulnerability Details

2
GHSA
GHSA-88wg-39x8-pwf8: The net-snmp package in OpenBSD through 52022-05-17
OSV
CVE-2015-8100: The net-snmp package in OpenBSD through 52015-11-10

📋Vendor Advisories

2
Microsoft
CVE-2015-8100: NIST NVD Details: https://nvd2020-08-11
Debian
CVE-2015-8100: net-snmp - The net-snmp package in OpenBSD through 5.8 uses 0644 permissions for snmpd.conf...2015