CyberRota Analysis
AI-GeneratedA vulnerability exists in the MRTG daemon that allows local, low-privileged attackers to exploit a symlink following issue when the daemon is started as a root user. By manipulating the symlink in the process ID (PID) file path, attackers can escalate privileges, potentially gaining unauthorized access to sensitive files. Organizations using MRTG should prioritize patching this vulnerability to mitigate the risk of local privilege escalation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A flaw was found in MRTG. When the MRTG daemon is started as a root user and subsequently drops privileges, a local, low-privileged attacker can exploit a symbolic link (symlink) following vulnerability. By influencing or pre-placing a symlink in the process ID (PID) file path, the attacker can trick the root process into changing the ownership of an arbitrary existing file to the daemon user. This can lead to local privilege escalation, allowing unauthorized access to or modification of sensitive files.