Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

small, powerful, scalable web/proxy server (USN-3114-1) nginx-full_1.10.0-0ubuntu0.16.04.3_i386.deb

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
7.0
MODERATE
Vector
I:C/AV:L/Au:N/AC:L/A:C/C:C
EPSS Score
Exploitation Probability
8.594%

CVE Information

Source CVE
CVE-2016-1247

Associated CVE
CVE-2016-1247

Patch Details

No records found

References

http://packetstormsecurity.com/files/139750/Nginx-Debian-Based-Distros-Root-Privilege-Escalation.html
http://seclists.org/fulldisclosure/2016/Nov/78
http://seclists.org/fulldisclosure/2017/Jan/33
http://www.debian.org/security/2016/dsa-3701
http://www.securityfocus.com/archive/1/archive/1/539796/100/0/threaded
http://www.securityfocus.com/bid/93903
http://www.securitytracker.com/id/1037104
http://www.ubuntu.com/usn/USN-3114-1
https://legalhackers.com/advisories/Nginx-Exploit-Deb-Root-PrivEsc-CVE-2016-1247.html
https://security.gentoo.org/glsa/201701-22
https://www.exploit-db.com/exploits/40768/
https://www.youtube.com/watch?v=aTswN1k1fQs

Details

CWE ID
CWE-59
CWE Type
Gain privileges
Vulnerability ID
28647
Published
2016-11-29
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators