CVE-2012-3513 - CVE House
Back to Database
Status published Critical CVE-2012-3513

munin-cgi-graph in Munin before 2.0.6, when running as a CGI...

Vulnerability Description

munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2012-3513

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

munin-monitoring

View all reports →

Affected Software

munin
Vulnerable Versions:
0, 2.0-beta1, 2.0-beta2, 2.0-beta3, 2.0-beta4, 2.0-beta5, 2.0-beta6, 2.0-beta7, 2.0-rc1, 2.0-rc2, 2.0-rc3, 2.0-rc4, 2.0-rc5, 2.0-rc6, 2.0-rc7, 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4

Timeline

Official Publish: November 21st, 2012
Last Modified: September 16th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.