CVE-2019-9166: High severity nagios xi vulnerability
Published Mar 28, 2019
·Updated
Privilege escalation in Nagios XI before 5.5.11 allows local attackers to elevate privileges to root via write access to config.inc.php and importxiconfig.php.
Affected Software
1 affected component
Nagios Nagios XI<5.5.11
Event History
Mar 28, 2019
CVE Published
via MITRE·07:10 PM
Data Sourced
via MITRE·07:10 PM
Description
Data Sourced
via NVD·08:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-9166?
CVE-2019-9166 has been classified as a high severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2019-9166?
To mitigate CVE-2019-9166, upgrade Nagios XI to version 5.5.11 or later.
3
What systems are affected by CVE-2019-9166?
CVE-2019-9166 affects Nagios XI versions prior to 5.5.11.
4
What type of vulnerability is CVE-2019-9166?
CVE-2019-9166 is a privilege escalation vulnerability.
5
Who can exploit CVE-2019-9166?
Local attackers with access to the Nagios XI installation can exploit CVE-2019-9166 to elevate their privileges.