ZeroHour

CVE-2018-8734

PoC ×3
CVSS 3.0
9.8 critical
EPSS
53%p99
Published
()
Modified
Description

SQL injection vulnerability in the core config manager in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an attacker to execute arbitrary SQL commands via the selInfoKey1 parameter.

Vendors
nagios
Products
nagios xi
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.