First published: Wed Nov 14 2018(Updated: )
Nagios XI 5.5.6 allows remote authenticated attackers to execute arbitrary commands via a crafted HTTP request.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios | =5.5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15709 has a high severity rating due to the potential for remote command execution.
To fix CVE-2018-15709, upgrade Nagios XI to version 5.5.7 or later.
Users of Nagios XI version 5.5.6 are affected by CVE-2018-15709.
CVE-2018-15709 can facilitate remote authenticated attacks that allow execution of arbitrary commands.
The attack vector for CVE-2018-15709 is through crafted HTTP requests sent to the Nagios XI application.