CVE-2019-9202: High severity nagios incident manager vulnerability
Published Mar 28, 2019
·Updated
Nagios IM (component of Nagios XI) before 2.2.7 allows authenticated users to execute arbitrary code via API key issues.
Affected Software
1 affected component
Nagios Incident Manager<2.2.7
Event History
Mar 28, 2019
CVE Published
via MITRE·06:48 PM
Data Sourced
via MITRE·06:48 PM
Description
Data Sourced
via NVD·07:29 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-9202?
CVE-2019-9202 has been classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2019-9202?
To remediate CVE-2019-9202, upgrade Nagios IM to version 2.2.7 or later.
3
Who is affected by CVE-2019-9202?
CVE-2019-9202 affects authenticated users of Nagios Incident Manager versions prior to 2.2.7.
4
What kind of attack does CVE-2019-9202 allow?
CVE-2019-9202 allows authenticated users to execute arbitrary code via API key issues.
5
Is there a workaround for CVE-2019-9202?
There is no documented workaround for CVE-2019-9202; upgrading is recommended.