OpenTSDB 2.4.0 and earlier is susceptible to remote code execution via the yrange parameter written to a gnuplot file in the /tmp directory. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.
View the template here CVE-2020-35476.yaml
Lab | Machine | Link |
---|---|---|
Hack The Box | AdmirerToo | Go to Practice |
References:
https://github.com/OpenTSDB/opentsdb/issues/2051