CVE-2016-1247 | nginx 1.6.2-5 on Debian/Ubuntu Log File /var/log/nginx link following (EDB-40768 / Nessus ID 94260)
A vulnerability has been found in nginx 1.6.2-5 on Debian/Ubuntu and classified as critical. Affected by this vulnerability is an unknown functionality of the file /var/log/nginx of the component Log File Handler. The manipulation leads to link following.
This vulnerability is known as CVE-2016-1247. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.