CVE-2022-0580: Incorrect Authorization in librenms/librenms
Published Feb 14, 2022
·Updated
Improper Access Control in Packagist librenms/librenms prior to 22.2.0.
Other sources
Incorrect Authorization in Packagist librenms/librenms prior to 22.2.0.
— MITRE
Affected Software
2 affected componentsFixes available
composer/librenms/librenms<22.2.0
22.2.0
librenms librenms<22.2.0
Remediation
Event History
Feb 14, 2022
CVE Published
via MITRE·10:55 PM
Data Sourced
via MITRE·10:55 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Feb 16, 2022
Advisory Published
12:01 AM
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-0580.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Improper Access Control in Packagist librenms/librenms prior to 22.2.0.'.
3
What is the severity of CVE-2022-0580?
The severity of CVE-2022-0580 is high with a CVSS score of 8.8.
4
What software versions are affected by CVE-2022-0580?
The software version affected by CVE-2022-0580 is librenms/librenms prior to 22.2.0.
5
How can I fix CVE-2022-0580?
To fix CVE-2022-0580, update to version 22.2.0 or later of librenms/librenms.