Hi

We've raised this as an issue for urgent investigation (OPS-1379). Thanks for 
flagging it.

> Hello,
> 
> My company's security team found a security flaws in opsview. even for 3.9.0
> 
> Someone can execute shell command via URL( ex.  
> http://opsviewurl/cgi-nmis/admin.pl?admin=ping&node=10.10.10.10 | ls -l )
> 
> Please fix it.
> 
> Thank you.

--
James
_______________________________________________
Opsview-users mailing list
[email protected]
http://lists.opsview.org/lists/listinfo/opsview-users

Reply via email to