Description
|
|
Command injection vulnerabilities exist in the Nagios XI web interface due to unescaped user input being passed to shell functions as an argument.
|
|
|
|
Default configuration
|
|
Profiles
|
High
|
Medium
|
Low
|
Internet
|
Action
|
Block
|
Block
|
Block
|
Block
|
Alarm Level
|
Major
|
Minor
|
Minor
|
Major
|
|
|
|
|
References
|
|
URL:
http://0day.today/exploit/25398
|
|
|
|
Available since
|
|
ASQ v5.0.0
|
|
|
|
Protects
|
|
Nagios XI Multiple Vulnerabilities
|
100 last CVE
|
|
|