Nagios

Nagios Xi

195 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.86%
  • Veröffentlicht 30.10.2025 21:37:48
  • Zuletzt bearbeitet 05.11.2025 18:26:50

Nagios XI versions prior to 5.4.13 contain a remote code execution vulnerability in the Component Download page. The download/import handler used unsafe command construction with attacker-controlled input and lacked sufficient validation and output e...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:37:28
  • Zuletzt bearbeitet 06.11.2025 16:36:47

Nagios XI versions prior to 2024R1.2 contain a command injection vulnerability in the Docker Wizard. Insufficient validation of user-supplied input in the wizard allows an authenticated administrator to inject shell metacharacters that are incorporat...

  • EPSS 1.77%
  • Veröffentlicht 30.10.2025 21:37:09
  • Zuletzt bearbeitet 05.11.2025 18:23:27

Nagios XI versions prior to 5.7.3 contain a command injection vulnerability in the report PDF download/export functionality. User-supplied values used in the PDF generation pipeline or the wrapper that invokes offline/pdf helper utilities were insuff...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:36:50
  • Zuletzt bearbeitet 06.11.2025 18:20:38

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.0 / Nagios XI 5.8.0 contais a cross-site scripting (XSS) vulnerability in the Templates pages, specifically in the UI logic that renders and handles the Active/Actions buttons. Insu...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:36:28
  • Zuletzt bearbeitet 06.11.2025 18:20:26

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.1 / Nagios XI 5.8.2 contains multiple cross-site scripting (XSS) vulnerabilities via the Services page affecting the config_name and service_description fields. Insufficient validat...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:36:08
  • Zuletzt bearbeitet 06.11.2025 18:19:44

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.6 / Nagios XI 5.8.8 contains a cross-site scripting (XSS) vulnerability via the search and deletion interfaces. Insufficient validation or escaping of user-supplied input may allow ...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:35:47
  • Zuletzt bearbeitet 06.11.2025 18:20:44

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.8 / Nagios XI 5.7.5 contains multiple cross-site scripting (XSS) vulnerabilities in the overlay UI elements and the Notification/Check Period pages. Insufficient validation or escap...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:35:22
  • Zuletzt bearbeitet 06.11.2025 18:20:32

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.1 / Nagios XI 5.8.2 contains multiple cross-site scripting (XSS) vulnerabilities in Overlay modals. Insufficient validation or escaping of user-supplied input may allow an attacker ...

  • EPSS 0.68%
  • Veröffentlicht 30.10.2025 21:34:57
  • Zuletzt bearbeitet 06.11.2025 18:20:49

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.7 / Nagios XI 5.7.4 contains multiple cross-site scripting (XSS) vulnerabilities in the object edit pages. Insufficient validation or escaping of user-supplied input may allow an at...

  • EPSS 0.31%
  • Veröffentlicht 30.10.2025 21:34:27
  • Zuletzt bearbeitet 31.10.2025 14:16:10

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. It has been identified as a duplicate of  https://www.cve.org/CVERecord?id=CVE-2021-33179 .