IT

Tracker / CVE-2020-28169

CVE-2020-28169

High 7.0

The td-agent-builder plugin before 2020-12-18 for Fluentd allows attackers to gain privileges because the bin directory is writable by a user account, but a file in bin is executed as NT AUTHORITY\SYSTEM.

Affected products and versions

debian debian_linux
td-agent-builder_project td-agent-builder · … → 2020-12-18

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References