Back to Database
Status published
Unknown
CVE-2020-15861
Net-SNMP through 5.7.3 allows Escalation of Privileges because of UNIX...
Vulnerability Description
Net-SNMP through 5.7.3 allows Escalation of Privileges because of UNIX symbolic link (symlink) following.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-15861
Credits & Attribution
No credits recorded in the NVD database.
References
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=966599
- https://github.com/net-snmp/net-snmp/commit/4fd9a450444a434a993bc72f7c3486ccce41f602
- https://github.com/net-snmp/net-snmp/issues/145
- https://security.gentoo.org/glsa/202008-12
- https://usn.ubuntu.com/4471-1/
- https://security.netapp.com/advisory/ntap-20200904-0001/
More from net-snmp
View All →CVE-2025-68615
Net-SNMP snmptrapd crash
Critical
9.8
CVE-2022-44793
handle_ipv6IpForwarding in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.4.3 through 5.9.3 has a...
Unknown
0
CVE-2022-44792
handle_ipDefaultTTL in agent/mibgroup/ip-mib/ip_scalars.c in Net-SNMP 5.8 through 5.9.3 has a...
Unknown
0
CVE-2022-24810
net-snmp: A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference.
Medium
6.5
CVE-2022-24809
net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference
Medium
6.5
Affected Vendor
net-snmp
View all reports →Affected Software
net-snmp, ubuntu linux, cloud backup, smi-s provider, solidfire \& hci management node
Vulnerable Versions:
0, 12.04, 14.04, 16.04, 18.04, 20.04
Timeline
Official Publish:
August 19th, 2020
Last Modified:
December 3rd, 2025
Added to House:
July 21st, 2026
CVSS Vectors
No vector data available
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.