CVE-2019-14257: High severity zenoss vulnerability
Published Aug 21, 2019
·Updated
pyraw in Zenoss 2.5.3 allows local privilege escalation by modifying environment variables to redirect execution before privileges are dropped, aka ZEN-31765.
Affected Software
1 affected component
Zenoss Zenoss=2.5.3
Event History
Aug 21, 2019
CVE Published
via MITRE·06:35 PM
Data Sourced
via MITRE·06:35 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14257?
CVE-2019-14257 has been classified as a high severity vulnerability.
2
How do I fix CVE-2019-14257?
To fix CVE-2019-14257, update Zenoss to a version that is not affected by this vulnerability.
3
What does CVE-2019-14257 affect specifically?
CVE-2019-14257 specifically affects Zenoss version 2.5.3.
4
What type of vulnerability is CVE-2019-14257?
CVE-2019-14257 is a local privilege escalation vulnerability.
5
Can CVE-2019-14257 be exploited remotely?
No, CVE-2019-14257 requires local access to exploit the vulnerability.