ZeroHour

CVE-2018-8733

PoC ×3
CVSS 3.0
9.8 critical
EPSS
27%p98
Published
()
Modified
Description

Authentication bypass vulnerability in the core config manager in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an unauthenticated attacker to make configuration changes and leverage an authenticated SQL injection vulnerability.

Vendors
nagios
Products
nagios xi
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.