Netdata
Discovery
# Default port (localhost only)
curl -i http://127.0.0.1:19999
# Check version in response header
# Server: Netdata Embedded HTTP Server v1.45.2
# Find ndsudo binary
find / -name ndsudo 2>/dev/null
# /opt/netdata/usr/libexec/netdata/plugins.d/ndsudo
# Check for SUID
ls -la /opt/netdata/usr/libexec/netdata/plugins.d/ndsudo
# -rwsr-x--- 1 root netdata 196K Apr 1 2024 ndsudoCVE-2024-32019 - ndsudo Privilege Escalation
Prerequisites
Detection
Exploitation
Alternative Commands
Quick One-Liner
Post-Exploitation Notes
References
Last updated