Improper access and command validation in the Nagios Docker Config Wizard before 1.1.2, as used in Nagios XI through 5.7, allows an unauthenticated attacker to execute remote code as the apache user.
References
Link | Resource |
---|---|
https://www.nagios.com/products/security/ | Vendor Advisory |
Configurations
Information
Published : 2021-01-26 10:16
Updated : 2021-02-03 09:51
NVD link : CVE-2021-3193
Mitre link : CVE-2021-3193
JSON object : View
CWE
Products Affected
nagios
- nagios_xi