CVE-2017-16834: PNP4NAGIOS

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

PNP4Nagios through 0.6.26 has /usr/bin/npcd and npcd.cfg owned by an unprivileged account but root code execution depends on these files, which allows local users to gain privileges by leveraging access to this unprivileged account.

Affected products

Published 2017-11-16. Last modified 2026-06-17.