Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-p373-jqfm-j6wr: Shinken Solutions Shinken Monitoring vulnerable to Incorrect Access Control

Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler class found in shinken/safepickle.py implements a weak authentication scheme when unserializing objects passed from monitoring nodes to the Shinken monitoring server.

ghsa
#git#auth

Shinken Solutions Shinken Monitoring vulnerable to Incorrect Access Control

Moderate severity GitHub Reviewed Published Oct 20, 2022 • Updated Oct 20, 2022

Related news

CVE-2022-37298: GitHub - dbyio/cve-2022-37298: CVE-2022-37298 Shinken Monitoring

Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler class found in shinken/safepickle.py implements a weak authentication scheme when unserializing objects passed from monitoring nodes to the Shinken monitoring server.