CVE-2018-8733
PoC ×3—CVSS 3.0
9.8 critical
EPSS
27%p98
Published
()
Modified
Description
Authentication bypass vulnerability in the core config manager in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an unauthenticated attacker to make configuration changes and leverage an authenticated SQL injection vulnerability.
- Vendors
- nagios
- Products
- nagios xi
- Weakness
- CWE-89
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.