Nagios

Nagios Xi

189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.44%
  • Veröffentlicht 30.10.2025 21:43:34
  • Zuletzt bearbeitet 06.11.2025 15:16:09

Nagios XI versions prior to 2012R1.6 contain a reflected cross-site scripting (XSS) vulnerability in the dashboard dashlet AJAX load functionality. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute...

  • EPSS 0.77%
  • Veröffentlicht 30.10.2025 21:43:07
  • Zuletzt bearbeitet 06.11.2025 18:17:48

Nagios XI versions prior to 2024R1.3.2 contain a remote command execution vulnerability in the WinRM Configuration Wizard. Insufficient validation of user-supplied input allows an authenticated administrator to inject shell metacharacters that are in...

Medienbericht
  • EPSS 0.77%
  • Veröffentlicht 30.10.2025 21:42:44
  • Zuletzt bearbeitet 06.11.2025 18:13:04

Nagios XI versions prior to 2026R1 contain a remote code execution vulnerability in the Core Config Manager (CCM) Run Check command. Insufficient validation/escaping of parameters used to build backend command lines allows an authenticated administr...

  • EPSS 0.85%
  • Veröffentlicht 30.10.2025 21:42:19
  • Zuletzt bearbeitet 06.11.2025 16:09:37

Nagios XI versions prior to 2024R1.2 are vulnerable to remote code execution (RCE) through its NRDP (Nagios Remote Data Processor) server plugins. Insufficient validation of inbound NRDP request parameters allows crafted input to reach command execut...

Medienbericht
  • EPSS 0.77%
  • Veröffentlicht 30.10.2025 21:41:58
  • Zuletzt bearbeitet 06.11.2025 18:17:25

Nagios XI versions prior to 2024R1.4.2 contain a remote code execution vulnerability in the Business Process Intelligence (BPI) component. Insufficient validation and sanitization of administrator-controlled BPI configuration parameters (notably bpi_...

  • EPSS 0.02%
  • Veröffentlicht 30.10.2025 21:41:36
  • Zuletzt bearbeitet 06.11.2025 14:13:16

Nagios XI versions prior to 2011R1.9 contain privilege escalation vulnerabilities in the scripts that install or update system crontab entries. Due to time-of-check/time-of-use race conditions and missing synchronization or final-path validation, a l...

  • EPSS 0.15%
  • Veröffentlicht 30.10.2025 21:41:13
  • Zuletzt bearbeitet 06.11.2025 18:17:08

Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System Profile component. The System Profile feature is an administrative diagnostic/configuration capability. Due to improper access controls and unsafe handl...

  • EPSS 0.07%
  • Veröffentlicht 30.10.2025 21:40:51
  • Zuletzt bearbeitet 06.11.2025 16:08:49

Nagios XI versions prior to 2024R1.2 contain a privilege escalation vulnerability related to NagVis configuration handling (nagvis.conf). An authenticated user could manipulate NagVis configuration data or leverage insufficiently validated configurat...

  • EPSS 0.02%
  • Veröffentlicht 30.10.2025 21:40:26
  • Zuletzt bearbeitet 05.11.2025 18:26:40

Nagios XI versions prior to 5.5.7 contain a privilege escalation vulnerability in the MRTG graphing component. MRTG-related processes/scripts executed with excessive privileges, allowing a local attacker with limited system access to abuse file/comma...

  • EPSS 0.03%
  • Veröffentlicht 30.10.2025 21:40:03
  • Zuletzt bearbeitet 05.11.2025 18:23:19

Nagios XI versions prior to 5.7.3 contain a privilege escalation vulnerability in the getprofile.sh helper script. The script performed profile retrieval and initialization routines using insecure file/command handling and insufficient validation of ...